Lucene search

K
osvGoogleOSV:CVE-2021-26272
HistoryJan 26, 2021 - 9:15 p.m.

CVE-2021-26272

2021-01-2621:15:12
Google
osv.dev
5

6.8 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

53.2%

It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted URL-like text into the editor, and then press Enter or Space (in the Autolink plugin).

6.8 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

53.2%