6.1
CVSSv3

CVE-2021-30109

Published: 05/04/2021 Updated: 08/04/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Froala Editor 3.2.6 is affected by Cross Site Scripting (XSS). Under certain conditions, a base64 crafted string leads to persistent Cross-site scripting (XSS) vulnerability within the hyperlink creation module.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

froala froala editor 3.2.6

Github Repositories

Froala Persistent XSS

CVE-2021-30109 Froala WYSIWYG Editor 326 is affected by Cross Site Scripting (XSS) Under certain conditions, a base64 crafted string leads to persistent XSS Affected product: Froala WYSIWYG Editor - V326 Description: Under certain conditions, a base64 crafted string leads to persistent Cross-site scripting (XSS) vulnerability within the hyperlink creation Fixed: No ###PO