CKEditor 4.0.1 cross-site scripting vulnerability

Description
  • The sample file <span class="bb-dark"><strong>samples/sample_posteddata.php</span></strong> (distributed with CKEditor 4.0.1) is vulnerable to a Cross-Site Scripting Vulnerability.
Remediation
  • Upgrade to the latest version of CKEditor or remove the sample_posteddata.php file.
References