AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2018-11680

MEDIUM · CVSS 6.5 EPSS 0.42%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-06-02 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2018-11680
Severity
MEDIUM
CVSS
6.5
EPSS
0.42%

Original Filing — NVD Description

An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability in the rich text editor that can add an IFRAME element. This might be used in a DoS attack if a referenced remote URL is refreshed at a rapid rate.