Lucene search

K
redhatcveRedhat.comRH:CVE-2020-9281
HistoryMay 21, 2022 - 12:07 a.m.

CVE-2020-9281

2022-05-2100:07:07
redhat.com
access.redhat.com
13

0.002 Low

EPSS

Percentile

53.2%

A cross-site scripting (XSS) vulnerability in the HTML Data Processor for CKEditor 4.0 before 4.14 allows remote attackers to inject arbitrary web script through a crafted "protected" comment (with the cke_protected syntax).