Vulnerabilities (CVE)

Filtered by vendor Summernote Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-37629 1 Summernote 1 Summernote 2024-11-21 N/A 6.1 MEDIUM
SummerNote 0.8.18 is vulnerable to Cross Site Scripting (XSS) via the Code View Function.
CVE-2023-42371 1 Summernote 1 Rich Text Editor 2024-11-21 N/A 5.4 MEDIUM
Cross Site Scripting vulnerability in Summernote Rich Text Editor v.0.8.18 and before allows a remote attacker to execute arbitrary code via a crafted script to the insert link function in the editor component.