PT-2025-50016 · Alex Prokopenko / Justcoded · Just Tinymce Custom Styles

Published

2025-12-09

·

Updated

2025-12-09

·

CVE-2025-62871

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Cross-Site Request Forgery (CSRF) vulnerability in Alex Prokopenko / JustCoded Just TinyMCE Custom Styles just-tinymce-styles allows Cross Site Request Forgery.This issue affects Just TinyMCE Custom Styles: from n/a through <= 1.2.1.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2025-62871

Affected Products

Just Tinymce Custom Styles