Medium severity6.1NVD Advisory· Published Sep 7, 2018· Updated Jun 17, 2026
CVE-2018-0642
CVE-2018-0642
Description
Cross-site scripting vulnerability in FV Flowplayer Video Player 6.1.2 to 6.6.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:foliovision:fv_flowplayer_video_player:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:foliovision:fv_flowplayer_video_player:*:*:*:*:*:wordpress:*:*range: >=6.1.2,<=6.6.4
- (no CPE)range: 6.1.2 to 6.6.4
- Range: 6.1.2 - 6.6.4
Patches
Vulnerability mechanics
References
2- wordpress.org/plugins/fv-wordpress-flowplayer/nvdRelease NotesVendor Advisory
- jvn.jp/en/jp/JVN70246549/index.htmlnvdVDB Entry
News mentions
0No linked articles in our index yet.