Логотип exploitDog
bind:CVE-2022-23474
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-23474

Количество 2

Количество 2

nvd логотип

CVE-2022-23474

около 3 лет назад

Editor.js is a block-style editor with clean JSON output. Versions prior to 2.26.0 are vulnerable to Code Injection via pasted input. The processHTML method passes pasted input into wrapper’s innerHTML. This issue is patched in version 2.26.0.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-6mvj-2569-3mcm

больше 1 года назад

Editor.js vulnerable to Code Injection

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-23474

Editor.js is a block-style editor with clean JSON output. Versions prior to 2.26.0 are vulnerable to Code Injection via pasted input. The processHTML method passes pasted input into wrapper’s innerHTML. This issue is patched in version 2.26.0.

CVSS3: 6.1
0%
Низкий
около 3 лет назад
github логотип
GHSA-6mvj-2569-3mcm

Editor.js vulnerable to Code Injection

CVSS3: 6.1
0%
Низкий
больше 1 года назад

Уязвимостей на страницу