• Status Unconfirmed
  • Percent Complete
  • Task Type Bug Report
  • Category Backend/Core
  • Assigned To
  • Operating System All
  • Severity High
  • Priority Very Low
  • Reported Version 1.0-rc10
  • Due in Version 1.0-rc11
  • Due Date Undecided
  • Votes
  • Private
Attached to Project: Flyspray
Opened by Neustradamus - 02.11.2022
Last edited by peterdd - 08.11.2022

FS#2668 - CKeditor update (CVEs)

Project Manager


I reevaluate severity if applies to our current config (CK components that are used in Flyspray)

And it applies only for installations using ckeditor/html syntax_plugin, not dokuwiki syntax_plugin.

Project Manager

For those who want immediatly upgrade to ckeditor 4.20 manually:

  1. Use existing flyspray/js/ckeditor/build-config.js
  2. Go to There is a Upload build-config.js button. Upload your build-config.js and the ck4 builder selects now all ckeditor4 required plugins.
  3. Download the Optimized version
  4. Keep your existing flyspray/js/ckeditor/config.js and flyspray/js/ckeditor/contents.css as these are customized for Flyspray.
  5. Replace flyspray/js/ckeditor/ content with the unzipped Optimized 4.20 version

Or wait for related commit on master branch
(I hope this week)


Available keyboard shortcuts


Task Details

Task Editing