Description
TinyMCE versions before 5.6.0 are affected by a stored cross-site scripting vulnerability. An unauthenticated and remote attacker could insert crafted HTML into the editor resulting in arbitrary JavaScript execution in another user's browser.
Remediation
References
Related Vulnerabilities
Apache 2.x version older than 2.0.46
Oracle JRE CVE-2013-2414 Vulnerability (CVE-2013-2414)
WordPress Plugin Mitsol Social Post Feed Cross-Site Scripting (1.10)
ownCloud Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-9046)
Apache Tomcat Credentials Management Errors Vulnerability (CVE-2009-3548)