CVE-2026-54606 | JiHong88 SunEditor up to 3.1.3 Embed plugin embed.js cross site scripting
A vulnerability, which was classified as problematic, has been found in JiHong88 SunEditor up to 3.1.3. This vulnerability affects unknown code of the file src/plugins/modal/embed.js of the component Embed plugin. This manipulation causes cross site scripting.
This vulnerability appears as CVE-2026-54606. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More