Vulnerabilities (CVE)

Filtered by vendor Summernote Subscribe
Filtered by product Summernote
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-29504 1 Summernote 1 Summernote 2025-06-17 N/A 7.6 HIGH
Cross Site Scripting vulnerability in Summernote v.0.8.18 and before allows a remote attacker to execute arbtirary code via a crafted payload to the codeview parameter.
CVE-2024-37629 1 Summernote 1 Summernote 2025-03-20 N/A 6.1 MEDIUM
SummerNote 0.8.18 is vulnerable to Cross Site Scripting (XSS) via the Code View Function.