Description
Froala Editor before 3.2.2 allows XSS via pasted content.
Remediation
References
https://froala.com/wysiwyg-editor/changelog/
Related Vulnerabilities
CVE-2022-41240 Vulnerability in maven package org.jenkins-ci.plugins:walti
CVE-2018-1000193 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2023-31125 Vulnerability in maven package org.webjars.npm:engine.io
CVE-2020-13934 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2023-40572 Vulnerability in maven package org.xwiki.platform:xwiki-platform-oldcore