org.webjars.npm:summernote@0.8.16 vulnerabilities
-
latest version
0.9.1
-
latest non vulnerable version
-
first published
7 years ago
-
latest version published
a month ago
-
licenses detected
- [0.8.6,)
-
package manager
Direct Vulnerabilities
Known vulnerabilities in the org.webjars.npm:summernote package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
org.webjars.npm:summernote is a super simple WYSIWYG Editor. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) in the WYSIWYG editor on the front page. An attacker can inject and execute malicious scripts by crafting input that is improperly sanitized. How to fix Cross-site Scripting (XSS)? Upgrade |
[,0.9.1)
|
org.webjars.npm:summernote is a super simple WYSIWYG Editor. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the Note: This is only exploitable if the attacker can access the editor component. How to fix Cross-site Scripting (XSS)? Upgrade |
[,0.9.1)
|
org.webjars.npm:summernote is a super simple WYSIWYG Editor. Affected versions of this package are vulnerable to Cross-site Scripting (XSS). It is possible to inject malicious JavaScript within the PoC
How to fix Cross-site Scripting (XSS)? Upgrade |
[0,0.8.19)
|