PatchSiren

fesomia CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM fesomia CVE published 2026-04-08

CVE-2026-39693

A Cross-site Scripting vulnerability was found in the FSM Custom Featured Image Caption plugin. This issue affects versions from n/a through <= 1.25.1. The vulnerability is caused by improper neutralization of input during web page generation, leading to DOM-Based XSS. Users of affected versions should review and apply patches or updates if available. The vulnerability has a CVSS score of 5.9 and a severi [truncated]