CVE-2026-5217 - Optimole <= 4.2.2 - Unauthenticated Stored Cross-Site Scripting via Srcset Descriptor Parameter
CVE ID :CVE-2026-5217
Published : April 11, 2026, 2:16 a.m. | 13 hours, 57 minutes ago
Description :The Optimole – Optimize Images | Convert WebP & AVIF | CDN & Lazy Load | Image Optimizatio...
Related Vulnerabilities
- CVE-2026-22560: An open redirect vulnerability in Rocket.Chat versions prior to 8.4.0 allows users to be redirected MEDIUM
- CVE-2026-40153: PraisonAIAgents is a multi-agent teams system. Prior to 1.5.128, the execute_command function in she HIGH
- CVE-2026-34424: Smart Slider 3 Pro version 3.5.1.35 for WordPress and Joomla contains a multi-stage remote access to CRITICAL
- CVE-2026-6032: A vulnerability was found in code-projects Simple Laundry System 1.0. This impacts an unknown functi MEDIUM
- CVE-2026-36233: A SQL injection vulnerability was found in the assignInstructorSubjects.php file of itsourcecode Onl CRITICAL
Related Coverage
Threat Actors