codex-team/editor.js

codex-team/editor.js

Releases115
Frequency4 weeks 1 day
Last Release
Stars31.8K
A block-style editor with clean JSON output

CVE History

CVEPublishedCVSS v3CVSS v2
6.1 MEDIUM

Editor.js is a block-style editor with clean JSON output. Versions prior to 2.26.0 are vulnerable to Code Injection via pasted input. The processHTML method passes pasted input into wrapper’s innerHTML. This issue is patched in version 2.26.0.