Description
Froala Editor v4.0.1 to v4.1.1 was discovered to contain a cross-site scripting (XSS) vulnerability.
Remediation
References
https://hacker.soarescorp.com/cve/2023-41592/
https://owasp.org/Top10/A03_2021-Injection/
https://owasp.org/www-project-top-ten/
Related Vulnerabilities
CVE-2021-41151 Vulnerability in npm package @backstage/plugin-scaffolder-backend
CVE-2019-12041 Vulnerability in maven package org.webjars.bower:remarkable
CVE-2023-7148 Vulnerability in maven package ml.shifu:shifu
CVE-2021-23507 Vulnerability in npm package object-path-set
CVE-2022-21653 Vulnerability in maven package org.typelevel:jawn-parser_3