Jodit is an awesome and useful wysiwyg editor with filebrowser
100%
Total Score
100
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-65841 jodit is vulnerable to Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in versions 0.0.0 - 4.13.6. | 0.0.0 - 4.13.6 | Medium |
CVE-2026-58263 jodit is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 4.12.28. | 0.0.0 - 4.12.28 | High |
CVE-2026-54756 jodit is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 0.0.0 - 4.12.18. | 0.0.0 - 4.12.18 | Medium |
CVE-2026-62324 jodit is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 4.12.30. | 0.0.0 - 4.12.30 | Medium |
AIKIDO-2026-577091 jodit is vulnerable to Cross-Site Scripting (XSS) in versions 3.21.3 - 4.13.5. | 3.21.3 - 4.13.5 | Medium |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant