cve/2018/CVE-2018-18909.md
2024-06-18 02:51:15 +02:00

595 B

CVE-2018-18909

Description

xhEditor 1.2.2 allows XSS via JavaScript code in the SRC attribute of an IFRAME element within the editor's source-code view.

POC

Reference

Github

No PoCs found on GitHub currently.