CVE-2021-30109
MEDIUMFroala Editor 3.2.6 - Stored Cross-Site Scripting via Hyperlink Creation Module
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-30109. PoCs published by Hackdwerg.
AI-analyzed exploit summary The repository contains only a README describing CVE-2021-30109, an XSS vulnerability in Froala WYSIWYG Editor 3.2.6, but lacks any functional exploit code or technical details. The PoC is marked as 'Coming soon,' indicating incomplete content.
Description
Froala Editor 3.2.6 is affected by Cross Site Scripting (XSS). Under certain conditions, a base64 crafted string leads to persistent Cross-site scripting (XSS) vulnerability within the hyperlink creation module.
Exploits (1)
The repository contains only a README describing CVE-2021-30109, an XSS vulnerability in Froala WYSIWYG Editor 3.2.6, but lacks any functional exploit code or technical details. The PoC is marked as 'Coming soon,' indicating incomplete content.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N