Files
CVEs-PoC/2018/CVE-2018-18909.md
T
2025-09-29 21:09:30 +02:00

606 B

CVE-2018-18909

Description

xhEditor 1.2.2 allows XSS via JavaScript code in the SRC attribute of an IFRAME element within the editor's source-code view.

POC

Reference

Github

No PoCs found on GitHub currently.