返回列表

CVE-2021-33829: Drupal 7 CKEditor XSS

PoC
2026-01-08

影响软件

Drupal 7 CKEditor

关联产品

漏洞描述

CKEditor 4.14.0 through 4.16.x before 4.16.1 contains a reflected cross-site scripting caused by mishandling in comments, letting remote attackers inject executable JavaScript code, exploit requires victim to view malicious content.

PoC / 利用代码

登录后可查看 PoC 内容

查看原文