Tiny

Tinymce

12 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.88%
  • Published 10.08.2020 20:15:11
  • Last modified 21.11.2024 05:08:12

TinyMCE before 4.9.7 and 5.x before 5.1.4 allows XSS in the core parser, the paste plugin, and the visualchars plugin by using the clipboard or APIs to insert content into the editor.

Exploit
  • EPSS 0.78%
  • Published 17.07.2019 17:15:13
  • Last modified 21.11.2024 04:17:57

tinymce 4.7.11, 4.7.12 is affected by: CWE-79: Improper Neutralization of Input During Web Page Generation. The impact is: JavaScript code execution. The component is: Media element. The attack vector is: The victim must paste malicious content to me...