RSS   Vulnerabilities for 'Ueditor'   RSS

2021-09-28
 
CVE-2021-37271

CWE-79
 

 
Cross Site Scripting (XSS) vulnerability exists in UEditor v1.4.3.3, which can be exploited by an attacker to obtain user cookie information.

 
2017-09-26
 
CVE-2017-14744

 

 
UEditor 1.4.3.3 has XSS via the SRC attribute of an IFRAME element.

 

 >>> Vendor: Baidu 10 Products
Soba search bar
Baidu hi
Baidu hi im
Baidux
Simeji
Spark browser
Baidu ime
Ueditor
Umeditor
Kity minder


Copyright 2024, cxsecurity.com

 

Back to Top