CVE-2019-1010113: Premiumsoftware Cleditor
Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.
Premium Software CLEditor 1.4.5 and earlier is affected by: Cross Site Scripting (XSS). The impact is: An attacker might be able to inject arbitrary html and script code into the web site. The component is: jQuery plug-in. The attack vector is: the victim must open a crafted href attribute of a link (A) element.
Affected products
- Premiumsoftware Cleditor: up to and including 1.4.5
Published 2019-07-19. Last modified 2026-06-17.