spocke
6 exploits
Active since Jan 2013
TinyMCE < 5.10.7 and 6.0.0-6.3.1 - Cross-Site Scripting via Alert and Confirm Dialogs
CVSS 5.4
TinyMCE PHP Spellchecker < 2.0.6.1 - Server-Side Request Forgery via Control Character Injection
plupload < 2.3.9 - Unrestricted Upload of File with Dangerous Type
CVSS 4.2
TinyMCE < 5.10.7 and 6.0.0-6.3.1 - Cross-Site Scripting via Alert and Confirm Dialogs
CVSS 5.4
TinyMCE <7.2.0, <6.8.4, <5.11.0 - XSS
CVSS 6.1
TinyMCE <7.2.0, <6.8.4, <5.11.0 - XSS
CVSS 6.1