Medium severity6.1NVD Advisory· Published Jan 31, 2018· Updated Jun 17, 2026
CVE-2018-6464
CVE-2018-6464
Description
Simditor v2.3.11 allows XSS via crafted use of svg/onload=alert in a TEXTAREA element, as demonstrated by Firefox 54.0.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
simditornpm | <= 2.3.11 | — |
Affected products
2- cpe:2.3:a:mycolorway:simditor:2.3.11:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- github.com/Heartway/simditor/blob/master/simditor.docxnvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-p9wj-wrrm-84m5ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-6464ghsaADVISORY
News mentions
0No linked articles in our index yet.