Where
-Infinity
0

composer/ckeditor/ckeditorCode Snippet GeSHi plugin has reflected cross-site scripting (XSS) vulnerability

Risk 39
Severity
6.1
First published (updated )

npm/ckeditor4Cross-site scripting (XSS) vulnerability in samples with enabled the preview feature

Risk 28
Severity
6.1
EPSS
0.05%
First published (updated )

composer/ckeditor/ckeditorCKEditor4 Cross-site scripting (XSS) vulnerability caused by incorrect CDATA detection

Risk 28
Severity
6.1
EPSS
0.06%
First published (updated )

CKEditor Ckeditor RedmineMalicious File Upload

Risk 86
Severity
9.8
First published (updated )

Fedoraproject Fedorackeditor4 plugins vulnerable to cross-site scripting caused by the editor instance destroying process

Risk 38
Severity
6.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle Financial Services Analytical Applications InfrastructureCross-site Scripting in CKEditor4

Risk 35
Severity
5.4
First published (updated )

Oracle Financial Services Analytical Applications InfrastructureRegular expression Denial of Service in dialog plugin

Risk 45
Severity
7.5
First published (updated )

Oracle Banking ApisHTML comments vulnerability allowing to execute JavaScript code

Risk 62
Severity
8.2
First published (updated )

Oracle Banking ApisAdvanced Content Filter (ACF) vulnerability allowing to execute JavaScript code using malformed HTML

Risk 62
Severity
8.2
First published (updated )

Fedoraproject FedoraExecution of JavaScript code using malformed HTML in ckeditor

Risk 55
Severity
7.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

composer/drupal/drupalXSS

Risk 46
Severity
7.2
First published (updated )

Oracle Commerce MerchandisingIt was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim …

Risk 37
Severity
6.5
First published (updated )

Oracle Financial Services Analytical Applications InfrastructureIt was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim …

Risk 46
Severity
7.5
First published (updated )

Oracle Commerce MerchandisingXSS

Risk 39
Severity
6.1
First published (updated )

Fedoraproject FedoraXSS

Risk 38
Severity
6.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle Banking Enterprise Default ManagementXSS

Risk 38
Severity
6.1
First published (updated )

CKEditor Ckeditor DrupalInfoleak

Risk 43
Severity
7.5
First published (updated )

composer/typo3/cmsXSS

Risk 39
Severity
6.1
First published (updated )

CKEditor CKEditorXSS

Risk 22
Severity
4.3
First published (updated )

CKEditor FCKeditorUnspecified vulnerability in the CKeditor module 6.x-2.x before 6.x-2.3 and the CKEditor module 6.x-…

Risk 47
Severity
6.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

CKEditor FCKeditorXSS

Risk 22
Severity
4.3
First published (updated )

FCKeditor FCKeditorXSS

Risk 22
Severity
4.3
First published (updated )

FCKeditor FCKeditorPath Traversal

Risk 52
Severity
7.5
First published (updated )

PHPlist PHPListCode Injection

Risk 52
Severity
7.5
First published (updated )

FCKeditor FCKeditorUnknown vulnerability in FCKeditor 2.0 RC2, when used with PHP-Nuke, allows remote attackers to uplo…

Risk 26
Severity
5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203