Vulnerabilities/

Joplin Cross Site Scripting Vulnerability via NOSCRIPT tags

Severity:
Medium

Description

Cross Site Scripting (XSS) vulnerability in Joplin Desktop App before 1.8.5 allows attackers to execute aribrary code due to improper sanitizing of html.

Recommendation

Update the joplin package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
joplin
Anything's wrong? Let us know Last updated on April 23, 2024

This issue is available in SmartScanner Professional

See Pricing