Moderate severityNVD Advisory· Published Jul 19, 2019· Updated Aug 5, 2024
CVE-2019-1010113
CVE-2019-1010113
Description
Premium Software CLEditor 1.4.5 and earlier is affected by: Cross Site Scripting (XSS). The impact is: An attacker might be able to inject arbitrary html and script code into the web site. The component is: jQuery plug-in. The attack vector is: the victim must open a crafted href attribute of a link (A) element.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
CLEditorNuGet | <= 1.4.5 | — |
Affected products
1- Range: ≤ 1.4.5
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/advisories/GHSA-hh56-x62g-gvhcghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2019-1010113ghsaADVISORY
- drive.google.com/drive/folders/1UxgdL8SJO6KKnG3bh0-LTl7C6i41VwoWghsax_refsource_MISCWEB
News mentions
0No linked articles in our index yet.