ZeroHour

CVE-2021-37267

CVSS 3.1
6.1 medium
EPSS
<1%p46
Published
()
Modified
Description

Cross Site Scripting (XSS) vulnerability exists in all versions of KindEditor, which can be exploited by an attacker to obtain user cookie information.

Vendors
kindsoft
Products
kindeditor
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.