Skip to content

Update ckeditor.js to prevent XSS vulnerability#83

Open
samism91 wants to merge 1 commit intocodeslayer1:masterfrom
samism91:patch-1
Open

Update ckeditor.js to prevent XSS vulnerability#83
samism91 wants to merge 1 commit intocodeslayer1:masterfrom
samism91:patch-1

Conversation

@samism91
Copy link

For CKEditor 4.6.2 version, XSS vulnerability is there: https://snyk.io/vuln/npm:ckeditor@4.6.2
So changing defaultScriptUrl from https://cdn.ckeditor.com/4.6.2/standard/ckeditor.js to https://cdn.ckeditor.com/4.12.1/standard/ckeditor.js

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant