Medium severity6.1NVD Advisory· Published Oct 19, 2019· Updated Jun 17, 2026
CVE-2019-18209
CVE-2019-18209
Description
templates/pad.html in Etherpad-Lite 1.7.5 has XSS when the browser does not encode the path of the URL, as demonstrated by Internet Explorer.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Etherpad-Lite/Etherpad-Litedescription
- Range: <1.7.5
Patches
Vulnerability mechanics
References
1- github.com/ether/etherpad-lite/commit/5879037ddca4ab9a4002adf90fc7ce6c9f82f01bnvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.