MEDIUM
Vladimir Prelovac
CVE published 2026-04-08
CVE-2026-39665
A DOM-Based XSS vulnerability was found in the SEO Friendly Images plugin, affecting versions from n/a through <= 3.0.5. This issue allows attackers to inject malicious scripts into websites, potentially leading to unauthorized actions or data theft. Users should update to a patched version to prevent potential XSS attacks. The vulnerability has a CVSS score of 6.5 and is classified as Medium severity.