CVE-2026-25581 | samclarke SCEditor up to 3.2.0 Configuration sceditor.create cross site scripting (GHSA-25fq-6qgg-qpj8 / EUVD-2026-5575)
A vulnerability categorized as problematic has been discovered in samclarke SCEditor up to 3.2.0. This affects the function sceditor.create of the component Configuration Handler. Such manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2026-25581. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.