Перейти к содержимому
Noroxi

Записи froala

9 опубликованных записей вендора froala.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
55,6 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 20
  2. 21
  3. 23
  4. 24

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

9 записей
  • CVE-2021-28114
    37Наблюдать

    Froala WYSIWYG Editor 3.2.6-1 is affected by XSS due to a namespace confusion during parsing.

    СредняяCVSS 5,4Эксплойта нетEPSS 52 %

    froala · froala editor16 июл. 2021 г.

  • CVE-2019-19935
    25Наблюдать

    Froala Editor before 3.2.3 allows XSS.

    СредняяCVSS 6,1Эксплойта нетEPSS 2 %

    froala · froala editor7 июл. 2020 г.

  • CVE-2021-30109
    24Наблюдать

    Froala Editor 3.2.6 is affected by Cross Site Scripting (XSS).

    СредняяCVSS 6,1Proof of conceptEPSS 1 %

    froala · froala editor5 апр. 2021 г.

  • CVE-2023-42426
    24Наблюдать

    Cross-site scripting (XSS) vulnerability in Froala Froala Editor v.4.1.1 allows remote attackers to execute arbitrary code via the 'Insert l

    СредняяCVSS 6,1Proof of conceptEPSS 1 %

    froala · froala editor25 сент. 2023 г.

  • CVE-2020-22864
    24Наблюдать

    A cross site scripting (XSS) vulnerability in the Insert Video function of Froala WYSIWYG Editor 3.1.0 allows attackers to execute arbitrary

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    froala · froala editor26 окт. 2021 г.

  • CVE-2023-43263
    24Наблюдать

    A Cross-site scripting (XSS) vulnerability in Froala Editor v.4.1.1 allows attackers to execute arbitrary code via the Markdown component.

    СредняяCVSS 6,1Proof of conceptEPSS 1 %

    froala · froala editor27 сент. 2023 г.

  • CVE-2020-26523
    24Наблюдать

    Froala Editor before 3.2.2 allows XSS via pasted content.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    froala · froala editor2 окт. 2020 г.

  • CVE-2024-51434
    24Наблюдать

    Inconsistent <plaintext> tag parsing allows for XSS in Froala WYSIWYG editor 4.3.0 and earlier.

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    7 нояб. 2024 г.

  • CVE-2023-41592
    21Наблюдать

    Froala Editor v4.0.1 to v4.1.1 was discovered to contain a cross-site scripting (XSS) vulnerability.

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    froala · froala editor14 сент. 2023 г.