VYPR
Moderate severityNVD Advisory· Published Jul 19, 2019· Updated Aug 5, 2024

CVE-2019-1010113

CVE-2019-1010113

Description

Premium Software CLEditor 1.4.5 and earlier is affected by: Cross Site Scripting (XSS). The impact is: An attacker might be able to inject arbitrary html and script code into the web site. The component is: jQuery plug-in. The attack vector is: the victim must open a crafted href attribute of a link (A) element.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
CLEditorNuGet
<= 1.4.5

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.