Filtered by vendor Ckeditor Subscriptions
Filtered by product Ckfinder Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-63830 2 Ckeditor, Cksource 2 Ckfinder, Ckfinder 2025-11-19 6.1 Medium
CKFinder 1.4.3 is vulnerable to Cross Site Scripting (XSS) in the File Upload function. An attacker can upload a crafted SVG containing active content.