CVE-2025-46508: Kasonzhao Advanced Lazy Load

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in kasonzhao Advanced lazy load advanced-lazy-load allows Stored XSS.This issue affects Advanced lazy load: from n/a through <= 1.6.0.

Affected products

  • Kasonzhao Advanced Lazy Load: up to and including 1.6.0

Published 2025-04-24. Last modified 2026-06-17.