org.webjars.bowergithub.summernote:summernote@0.8.10 vulnerabilities
-
latest version
0.8.20
-
first published
6 years ago
-
latest version published
3 years ago
-
licenses detected
- [0.8.8,)
-
package manager
Direct Vulnerabilities
Known vulnerabilities in the org.webjars.bowergithub.summernote:summernote package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
org.webjars.bowergithub.summernote:summernote is a super simple WYSIWYG Editor. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) in the WYSIWYG editor on the front page. An attacker can inject and execute malicious scripts by crafting input that is improperly sanitized. How to fix Cross-site Scripting (XSS)? There is no fixed version for |
[0,)
|
org.webjars.bowergithub.summernote:summernote is a super simple WYSIWYG Editor. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the Note: This is only exploitable if the attacker can access the editor component. How to fix Cross-site Scripting (XSS)? A fix was pushed into the |
[0,)
|
org.webjars.bowergithub.summernote:summernote is a super simple WYSIWYG Editor. Affected versions of this package are vulnerable to Cross-site Scripting (XSS). It is possible to inject malicious JavaScript within the PoC
How to fix Cross-site Scripting (XSS)? Upgrade |
[0,0.8.19)
|
org.webjars.bowergithub.summernote:summernote is a super simple WYSIWYG Editor. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) due to a lack of sanitization in some text fields. How to fix Cross-site Scripting (XSS)? Upgrade |
[,0.8.12)
|