Description
Froala Editor v4.0.1 to v4.1.1 was discovered to contain a cross-site scripting (XSS) vulnerability.
Remediation
References
https://hacker.soarescorp.com/cve/2023-41592/
https://owasp.org/Top10/A03_2021-Injection/
https://owasp.org/www-project-top-ten/
Related Vulnerabilities
CVE-2022-25854 Vulnerability in npm package @yaireo/tagify
CVE-2016-10735 Vulnerability in maven package com.loopeer.android:bootstrap
CVE-2020-36732 Vulnerability in maven package org.webjars.bower:crypto-js
CVE-2013-1808 Vulnerability in npm package zeroclipboard
CVE-2021-32824 Vulnerability in maven package org.apache.dubbo:dubbo-common