CVE-2019-19502
Code injection in pluginconfig.php in Image Uploader and Browser for CKEditor before 4.1.9 allows remote authenticated users to execute arbitrary PHP code.
Date published : 2019-12-02
https://github.com/xsmo/Image-Uploader-and-Browser-for-CKEditor/compare/4.1.8…v4.1.9
