Wangeditor
Source repositories
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-25038 | Med | 0.40 | 6.1 | 0.00 | May 31, 2024 | wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function. | ||
| CVE-2022-25037 | Med | 0.28 | 5.4 | 0.00 | May 31, 2024 | An issue in wanEditor v4.7.11 and fixed in v.4.7.12 and v.5 was discovered to contain a cross-site scripting (XSS) vulnerability via the image upload function. | ||
| CVE-2023-24251 | 0.00 | — | 0.00 | Feb 27, 2023 | WangEditor v5 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /dist/index.js. |
- risk 0.40cvss 6.1epss 0.00
wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function.
- risk 0.28cvss 5.4epss 0.00
An issue in wanEditor v4.7.11 and fixed in v.4.7.12 and v.5 was discovered to contain a cross-site scripting (XSS) vulnerability via the image upload function.
- CVE-2023-24251Feb 27, 2023risk 0.00cvss —epss 0.00
WangEditor v5 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /dist/index.js.