jodit@3.4.11 vulnerabilities

Jodit is an awesome and useful wysiwyg editor with filebrowser

  • latest version

    4.2.47

  • first published

    8 years ago

  • latest version published

    9 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the jodit package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Cross-site Scripting (XSS)

    jodit is a Jodit is awesome and usefully wysiwyg editor with filebrowser

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the rich text editor component, allowing an attacker to obtain sensitive information by sending a specially crafted payload.

    How to fix Cross-site Scripting (XSS)?

    There is no fixed version for jodit.

    *
    • M
    Cross-site Scripting (XSS)

    jodit is a Jodit is awesome and usefully wysiwyg editor with filebrowser

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) when pasting specially constructed input.

    How to fix Cross-site Scripting (XSS)?

    There is no fixed version for jodit.

    *