Launchpad.net

CVE 2018-17960

CKEditor 4.x before 4.11.0 allows user-assisted XSS involving a source-mode paste.

See the CVE page on Mitre.org for more details.