Get a Pentest and security assessment of your IT network.

Cyber Security

High-Severity TinyMCE Cross-Site Scripting Flaw Fixed

A high-severity flaw has been disclosed in TinyMCE, an open-source text editor used in content management systems (CMS) of websites. Researchers found a built-in cross-site scripting (XSS) flaw that could have been potentially exploited remotely by attackers to gain administrative privileges to websites. Tiny Technologies’ Tiny Technologies says millions of people use the editor daily, however researchers that found the flaw estimate only thousands of website CMS tools are impacted. The flaw exists in version 5.2.0 and earlier of the TinymCE application.

Source: https://threatpost.com/high-severity-tinymce-cross-site-scripting-flaw-fixed/158306/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security