CVE-2021-33829: Drupal 7 CKEditor XSS
PoC2026-01-08
影响软件
Drupal 7 CKEditor
关联产品
漏洞描述
CKEditor 4.14.0 through 4.16.x before 4.16.1 contains a reflected cross-site scripting caused by mishandling in comments, letting remote attackers inject executable JavaScript code, exploit requires victim to view malicious content.
PoC / 利用代码
登录后可查看 PoC 内容