pkg:npm/@ckeditor/ckeditor5-html-support

2 total CVEsMEDIUM2

✅ Check your installed version

All known vulnerabilities

  • MEDIUM6.4CVE-2026-28343CKEditor 5 has Cross-site Scripting (XSS) in the HTML Support package
    >= 29.0.0, < 47.6.0
  • MEDIUM5.8CVE-2022-31175CKEditor5 cross-site scripting vulnerability caused by the editor instance destroying process
    from 0, < 35.0.1