Known Vulnerabilities for Tinymce by Tiny
Listed below are 10 of the newest known vulnerabilities associated with "Tinymce" by "Tiny".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-47762 json | TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS vulnerability via forged... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-47761 json | TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS vulnerability in the med... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-47760 json | TinyMCE is an open source rich text editor. From 6.8.0 to before 7.1.0, TinyMCE contains an XSS vulnerability caused by impro... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-47759 json | TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS vulnerability via unsani... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-38526 json | An authenticated arbitrary file upload vulnerability in the /admin/tinymce/upload endpoint of Webkul Krayin CRM v2.2.x allows... | Not Provided | 2026-04-14 | 2026-04-14 |
| CVE-2025-26582 json | Cross-Site Request Forgery (CSRF) vulnerability in Blackbam TinyMCE Advanced qTranslate fix editor problems tinymce-advanced-... | Not Provided | 2025-02-13 | 2026-04-23 |
| CVE-2025-23439 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in willshouse TinyMCE Exte... | Not Provided | 2025-03-03 | 2026-04-23 |
| CVE-2024-25904 json | Cross-Site Request Forgery (CSRF) vulnerability in David Stockl TinyMCE and TinyMCE Advanced Professsional Formats and Styles... | Not Provided | 2024-02-21 | 2026-04-28 |
| CVE-2024-21911 json | 6.1 - MEDIUM | 2024-01-03 | 2024-01-08 | |
| CVE-2024-21910 json | 6.1 - MEDIUM | 2024-01-03 | 2024-01-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Tiny | Tinymce | 5.4.1 | |||
| Application | Tiny | Tinymce | 5.4.0 | |||
| Application | Tiny | Tinymce | 5.3.2 | |||
| Application | Tiny | Tinymce | 5.3.1 | |||
| Application | Tiny | Tinymce | 5.3.0 | |||
| Application | Tiny | Tinymce | 5.2.2 | |||
| Application | Tiny | Tinymce | 5.2.1 | |||
| Application | Tiny | Tinymce | 5.2.0 | |||
| Application | Tiny | Tinymce | 5.1.6 | |||
| Application | Tiny | Tinymce | 5.1.5 | |||
| Application | Tiny | Tinymce | 5.1.4 | |||
| Application | Tiny | Tinymce | 5.1.3 | |||
| Application | Tiny | Tinymce | 5.1.2 | |||
| Application | Tiny | Tinymce | 5.1.1 | |||
| Application | Tiny | Tinymce | 5.1.0 | |||
| Application | Tiny | Tinymce | 5.0.9 | |||
| Application | Tiny | Tinymce | 5.0.8 | |||
| Application | Tiny | Tinymce | 5.0.7 | |||
| Application | Tiny | Tinymce | 5.0.6 | |||
| Application | Tiny | Tinymce | 5.0.5 |