OSV 1.4.0 · github-reviewed · 修改于 2021-08-18 03:04
发布时间
2019-07-27 00:10
GitHub 审查时间
2019-07-25 23:56
NVD 发布时间
2019-07-20 00:15
源文件
advisories/github-reviewed/2019/07/GHSA-hh56-x62g-gvhc/GHSA-hh56-x62g-gvhc.json
Premium Software CLEditor 1.4.5 and earlier is affected by: Cross Site Scripting (XSS). The impact is: An attacker might be able to inject arbitrary html and script code into the web site. The component is: jQuery plug-in. The attack vector is: the victim must open a crafted href attribute of a link (A) element.