Medium severity5.4NVD Advisory· Published Sep 28, 2021· Updated Jun 17, 2026
CVE-2021-37271
CVE-2021-37271
Description
Cross Site Scripting (XSS) vulnerability exists in UEditor v1.4.3.3, which can be exploited by an attacker to obtain user cookie information.
Affected products
3- UEditor/UEditordescription
Patches
Vulnerability mechanics
References
2- www.freebuf.com/vuls/269956.htmlnvdExploitThird Party Advisory
- www.cnvd.org.cn/flaw/show/3243916nvdThird Party Advisory
News mentions
0No linked articles in our index yet.