Description
Froala Editor v4.0.1 to v4.1.1 was discovered to contain a cross-site scripting (XSS) vulnerability.
Remediation
References
https://hacker.soarescorp.com/cve/2023-41592/
https://owasp.org/Top10/A03_2021-Injection/
https://owasp.org/www-project-top-ten/
Related Vulnerabilities
CVE-2020-11022 Vulnerability in maven package org.webjars.npm:jquery
CVE-2021-21172 Vulnerability in npm package electron
CVE-2022-35142 Vulnerability in npm package raneto
CVE-2023-46998 Vulnerability in maven package org.webjars.bowergithub.makeusabrew:bootbox
CVE-2022-34112 Vulnerability in maven package io.dataease:dataease-plugin-common