Description
A cross-site scripting (XSS) vulnerability in TinyMCE 5.2.1 and earlier allows remote attackers to inject arbitrary web script when configured in classic editing mode.
Remediation
References
Related Vulnerabilities
WordPress Plugin Redirection Cross-Site Request Forgery (3.6.2)
WordPress Plugin Child Theme Creator by Orbisius Arbitrary File Modification (1.2.6)
Joomla Improper Input Validation Vulnerability (CVE-2015-8565)
MediaWiki Incorrect Authorization Vulnerability (CVE-2020-26121)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-2356)