Grapesjs is a web-based page builder and visual editor component with a modestly scoped vulnerability footprint centered on its core product. The durable signal centers on cross-site scripting through improper input neutralization during page generation, a characteristic risk in components that accept and render user-provided content.
The number and severity of CVEs published that impact products developed by Grapesjs over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-21802MEDIUM The package grapesjs before 0.19.5 are vulnerable to Cross-site Scripting (XSS) due to an improper sanitization of the class name in Selector Manager. | Jul 25, 2022 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Grapesjs.
Media articles that mention a CVE ID that affects a product developed by Grapesjs — matched by CVE ID, not by vendor name.