Total vulnerabilities in the database
A Cross-Site scripting vulnerability has been found in CKSource CKEditor affecting versions 4.15.1 and earlier. An attacker could send malicious javascript code through the /ckeditor/samples/old/ajax.html file and retrieve an authorized user's information.
Software | From | Fixed in |
---|---|---|
cksource / ckeditor | - | 4.15.1.x |
![]() |
- | 4.24.0-lts |