Loading product vulnerabilities…
Total
2
Critical
0
High
1
Medium
1
CISA KEV
0
SummerNote v0.9.1 is vulnerable to Cross Site Scripting (XSS) via the Code View Function.
Cross Site Scripting vulnerability in Summernote v.0.8.18 and before allows a remote attacker to execute arbtirary code via a crafted payload to the codeview parameter.