Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/b0marek/cve-2023-42426
Vulnerability AnalysisExploitationWeb Application ExploitationWeb SecurityPenetration Testing
GitHubb0marek/cve-2023-42426

CVE-2023-42426

Repository for CVE-2023-42426 vulnerability.

View Repository
2 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE ID: CVE-2023-42426

Vulnerability Type: Cross-Site Scripting

Description: Cross-site scripting (XSS) vulnerability in Froala Froala Editor v.4.1.1 allows remote attackers to execute arbitrary code via the 'Insert link' parameter in the 'Insert Image' component.

Steps to reproduce:

  1. Select the "Insert Image" option and add a new image.
  2. Click on the added image, then use the "Insert Link" option and input the payload: https://example.com" onmouseover='alert(xss)'. image

Reference:

  1. https://cve.report/CVE-2023-42426
  2. https://github.com/froala/wysiwyg-editor/issues/4678
  3. https://froala.com
Download Tool