Vanilla JavaScript based WYSIWYG web editor
100%
Total Score
100
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-54606 New suneditor is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 3.1.3. | 0.0.0 - 3.1.3 | High |
AIKIDO-2026-746486 suneditor is vulnerable to Cross-Site Scripting (XSS) in versions 0.0.1 - 2.47.10. | 0.0.1 - 2.47.10 | Critical |
AIKIDO-2026-10669 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. suneditor is vulnerable to Improper Input Validation in versions 0.0.1 - 2.47.9. | 0.0.1 - 2.47.9 | Medium |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant