Vulnerabilities/

Trix Editor Arbitrary Code Execution Vulnerability

Severity:
Medium

Description

The Trix editor, versions prior to 2.1.1, is vulnerable to arbitrary code execution when copying and pasting content from the web or other documents with markup into the editor.

Recommendation

Update the trix package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
trix
Anything's wrong? Let us know Last updated on June 03, 2024

This issue is available in SmartScanner Professional

See Pricing