Cross Site Scripting (XSS) vulnerability exists in all versions of KindEditor, which can be exploited by an attacker to obtain user cookie information.Referenceshttps://www.cnvd.org.cn/flaw/show/3257066