pkg:NuGet/TinyMCE

11 total CVEsMEDIUM10

✅ Check your installed version

All known vulnerabilities

  • MEDIUM6.1CVE-2024-38356TinyMCE Cross-Site Scripting (XSS) vulnerability using noneditable_regexp option
    from 0, < 5.11.0
  • MEDIUM6.1CVE-2024-38357TinyMCE Cross-Site Scripting (XSS) vulnerability using noscript elements
    from 0, < 5.11.0
  • MEDIUM6.1CVE-2023-48219TinyMCE vulnerable to mutation Cross-site Scripting via special characters in unescaped text nodes
    from 0, < 5.10.9
  • MEDIUM6.1CVE-2023-45819TinyMCE XSS vulnerability in notificationManager.open API
    >= 6.0.0, < 6.7.1
  • MEDIUM6.1CVE-2023-45818TinyMCE mXSS vulnerability in undo/redo, getContent API, resetContent API, and Autosave plugin
    >= 6.0.0, < 6.7.1
  • MEDIUM6.1CVE-2024-21910Cross-site scripting vulnerability in TinyMCE plugins
    from 0, < 5.10.0
  • MEDIUM6.1CVE-2024-21908Cross-site scripting vulnerability in TinyMCE
    from 0, < 5.9.0
  • MEDIUM5.4CVE-2022-23494Cross-site scripting vulnerability in TinyMCE alerts
    >= 6.0.0, < 6.3.1
  • MEDIUM4.3CVE-2024-29203TinyMCE Cross-Site Scripting (XSS) vulnerability in handling iframes
    from 0, < 6.8.1
  • MEDIUM4.3CVE-2024-29881TinyMCE Cross-Site Scripting (XSS) vulnerability in handling external SVG files through Object or Embed elements
    from 0, < 7.0.0
  • CVE-2024-21911Cross-site scripting vulnerability in TinyMCE
    from 0, < 5.6.0