VYPR

Wangeditor

by Wangeditor Team

Source repositories

CVEs (3)

  • CVE-2022-25038MedMay 31, 2024
    risk 0.40cvss 6.1epss 0.00

    wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function.

  • CVE-2022-25037MedMay 31, 2024
    risk 0.28cvss 5.4epss 0.00

    An issue in wanEditor v4.7.11 and fixed in v.4.7.12 and v.5 was discovered to contain a cross-site scripting (XSS) vulnerability via the image upload function.

  • CVE-2023-24251Feb 27, 2023
    risk 0.00cvss epss 0.00

    WangEditor v5 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /dist/index.js.