Description
CKEditor 4.x before 4.11.0 allows user-assisted XSS involving a source-mode paste.
Remediation
References
Related Vulnerabilities
SharePoint CVE-2021-31966 Vulnerability (CVE-2021-31966)
WordPress Plugin Feedweb Cross-Site Scripting (2.4)
Next.js User Interface (UI) Misrepresentation of Critical Information Vulnerability (CVE-2022-23646)
WordPress Plugin Ajax Calendar 'example.php' Cross-Site Scripting (1.0)
WordPress Plugin Acurax On Click Pop Under Multiple Unspecified Vulnerabilities (2.2.1)