Vulnerabilities/

CKEditor4 Cross-site Scripting vulnerability caused by incorrect CDATA detection

Severity:
Medium

Description

The vulnerability has been discovered in the core HTML parsing module and may affect all editor instances that:

Recommendation

Update the ckeditor4 package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
ckeditor4
Anything's wrong? Let us know Last updated on March 06, 2024