CVE-2018-18909
03.11.2018, 16:29
xhEditor 1.2.2 allows XSS via JavaScript code in the SRC attribute of an IFRAME element within the editor's source-code view.
Vendor | Product | Version |
---|---|---|
xheditor | xheditor | 1.2.2 |
𝑥
= Vulnerable software versions
xhEditor 1.2.2 allows XSS via JavaScript code in the SRC attribute of an IFRAME element within the editor's source-code view.
Vendor | Product | Version |
---|---|---|
xheditor | xheditor | 1.2.2 |