Vulnerabilities/

editor.md vulnerable to Cross-site Scripting

Severity:
Medium

Description

Cross Site Scripting (XSS) vulnerability in pandao editor.md thru 1.5.0 allows attackers to inject arbitrary web script or HTML via crafted markdown text.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
editor.md
Anything's wrong? Let us know Last updated on November 07, 2023

This issue is available in SmartScanner Professional

See Pricing