Web based JavaScript HTML WYSIWYG editor control.
84%
Total Score
70
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2024-38357 tinymce is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 5.11.0, 0.0.0 - 5.11.0, 6.0.0 - 6.8.4, 7.0.0 - 7.2.0, 6.0.0 - 6.8.4 and 7.0.0 - 7.2.0. | 0.0.0 - 5.11.06.0.0 - 6.8.47.0.0 - 7.2.0 | Medium |
CVE-2024-38356 tinymce is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 5.11.0, 0.0.0 - 5.11.0, 6.0.0 - 6.8.4, 7.0.0 - 7.2.0, 6.0.0 - 6.8.4 and 7.0.0 - 7.2.0. | 0.0.0 - 5.11.06.0.0 - 6.8.47.0.0 - 7.2.0 | Medium |
CVE-2024-29203 tinymce is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 6.8.1 and 0.0.0 - 6.8.1. | 0.0.0 - 6.8.1 | Medium |
CVE-2023-48219 tinymce is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 5.10.9, 6.0.0 - 6.7.3, 0.0.0 - 5.10.9 and 6.0.0 - 6.7.3. | 0.0.0 - 5.10.96.0.0 - 6.7.3 | Medium |
CVE-2023-45818 tinymce is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 6.0.0 - 6.7.1, 6.0.0 - 6.7.1, 0.0.0 - 5.10.8 and 0.0.0 - 5.10.8. | 0.0.0 - 5.10.86.0.0 - 6.7.1 | Medium |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant