HTML Support feature for CKEditor 5.
90%
Total Score
100
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2026-28343 @ckeditor/ckeditor5-html-support is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 29.0.0 - 47.6.0. | 29.0.0 - 47.6.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
es-toolkit Version 1.45.1 | — | — |
@ckeditor/ckeditor5-core Version 48.1.1 | — | — |
@ckeditor/ckeditor5-list Version 48.1.1 | — | — |
@ckeditor/ckeditor5-enter Version 48.1.1 | — | — |
@ckeditor/ckeditor5-image Version 48.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant