Description
CKEditor 4.x before 4.11.0 allows user-assisted XSS involving a source-mode paste.
Remediation
References
Related Vulnerabilities
Apache httpOnly cookie disclosure
WordPress Plugin Image Slider by Ays-Responsive Slider and Carousel SQL Injection (2.4.9)
WordPress Plugin Flow-Flow Social Stream Unspecified Vulnerability (3.0.71)
WordPress Plugin Login by Auth0 Multiple Vulnerabilities (3.11.3)
WordPress Plugin Mail On Update Cross-Site Request Forgery (5.1.0)