CVE-2020-13459: Verbb Image Resizer
Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.
An issue was discovered in the Image Resizer plugin before 2.0.9 for Craft CMS. There is stored XSS in the Bulk Resize action.
Affected products
- Verbb Image Resizer: before 2.0.9 (fixed in 2.0.9)
Published 2020-05-25. Last modified 2026-06-17.