npm package
jsoneditor
pkg:npm/jsoneditor
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-3822 | Hig | 7.5 | < 9.5.6 | 9.5.6 | Sep 27, 2021 | jsoneditor is vulnerable to Inefficient Regular Expression Complexity | |
| CVE-2020-23849 | Med | 6.1 | < 9.0.2 | 9.0.2 | Jan 11, 2021 | Stored XSS was discovered in the tree mode of jsoneditor before 9.0.2 through injecting and executing JavaScript. |
- affected < 9.5.6fixed 9.5.6
jsoneditor is vulnerable to Inefficient Regular Expression Complexity
- affected < 9.0.2fixed 9.0.2
Stored XSS was discovered in the tree mode of jsoneditor before 9.0.2 through injecting and executing JavaScript.