Executive brief
The Preview plugin in CKEditor allows Cross-site scripting (XSS)
Affected products
- Packagist ckeditor/ckeditor
Junglewise Threat Intelligence
CVE-2014-5191 · Severity: medium · CVSS 4 · Published 2022-05-17
Technologies: ckeditor/ckeditor (Packagist). Vendors: Packagist.
The Preview plugin in CKEditor allows Cross-site scripting (XSS)