CVE-2023-42399: Xdsoft Joditeditor

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in xdsoft.net Jodit Editor v.4.0.0-beta.86 allows a remote attacker to obtain sensitive information via the rich text editor component.

Affected products

  • Xdsoft Joditeditor: version 4.0.0 only

Published 2023-09-19. Last modified 2026-07-09.