CVE Database
/

CVE-2017-15719

Back to search

CVE-2017-15719

Published: Mar 12, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

In Wicket jQuery UI 6.28.0 and earlier, 7.9.1 and earlier, and 8.0.0-M8 and earlier, a security issue has been discovered in the WYSIWYG editor that allows an attacker to submit arbitrary JS code to WYSIWYG editor.

VendorProductVersions

Apache Software Foundation

Wicket jQuery UI

affected
<= 6.28.0
affected
<= 7.9.1
affected
<= 8.0.0-M8

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now