Vulnerabilities > Summernote

DATE CVE VULNERABILITY TITLE RISK
2024-06-12 CVE-2024-37629 Cross-site Scripting vulnerability in Summernote 0.8.18
SummerNote 0.8.18 is vulnerable to Cross Site Scripting (XSS) via the Code View Function.
network
low complexity
summernote CWE-79
6.1
2023-09-18 CVE-2023-42371 Cross-site Scripting vulnerability in Summernote Rich Text Editor
Cross Site Scripting vulnerability in Summernote Rich Text Editor v.0.8.18 and before allows a remote attacker to execute arbitrary code via a crafted script to the insert link function in the editor component.
network
low complexity
summernote CWE-79
5.4