PatchSiren

Vladimir Prelovac CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Vladimir Prelovac CVE published 2026-04-08

CVE-2026-39665

A DOM-Based XSS vulnerability was found in the SEO Friendly Images plugin, affecting versions from n/a through <= 3.0.5. This issue allows attackers to inject malicious scripts into websites, potentially leading to unauthorized actions or data theft. Users should update to a patched version to prevent potential XSS attacks. The vulnerability has a CVSS score of 6.5 and is classified as Medium severity.