CVE-2019-1010091
Expert Analysis
Professional remediation guidance
Get tailored security recommendations from our analyst team for CVE-2019-1010091. We'll provide specific mitigation strategies based on your environment and risk profile.
Description
tinymce 4.7.11, 4.7.12 is affected by: CWE-79: Improper Neutralization of Input During Web Page Generation. The impact is: JavaScript code execution. The component is: Media element. The attack vector is: The victim must paste malicious content to media element's embed tab.
Available Exploits
Related News
Affected Products
Affected Versions:
GitHub Security Advisories
Community-driven vulnerability intelligence from GitHub
Advisory Details
Affected Packages
CVSS Scoring
CVSS Score
References
Advisory provided by GitHub Security Advisory Database. Published: May 11, 2020, Modified: January 14, 2021