MEDIUM
Jongmyoung Kim
CVE published 2026-04-08
CVE-2026-39667
The Korea SNS plugin is vulnerable to DOM-Based XSS due to improper neutralization of input during web page generation. This issue affects Korea SNS from n/a through <= 1.7.0. The CVE record was published on 2026-04-08T09:16:38.037Z and has not been modified since then. The vulnerability has a CVSS score of 5.9 and is considered Medium severity. Users of Korea SNS plugin version 1.7.0 or earlier should re [truncated]