VYPR

Summernote

by Summernote

CVEs (3)

  • CVE-2024-29504HigApr 10, 2024
    risk 0.49cvss 7.6epss 0.01

    Cross Site Scripting vulnerability in Summernote v.0.8.18 and before allows a remote attacker to execute arbtirary code via a crafted payload to the codeview parameter.

  • CVE-2023-42371MedSep 18, 2023
    risk 0.35cvss 5.4epss 0.01

    Cross Site Scripting vulnerability in Summernote Rich Text Editor v.0.8.18 and before allows a remote attacker to execute arbitrary code via a crafted script to the insert link function in the editor component.

  • CVE-2024-37629MedJun 12, 2024
    risk 0.33cvss 6.1epss 0.00

    SummerNote v0.9.1 is vulnerable to Cross Site Scripting (XSS) via the Code View Function.