Vulnerabilities/

Joplin Vulnerable to Code Injection

Severity:
High

Description

Joplin prior to version 2.7.1 allows remote attackers to execute system commands through malicious code in user search results.

Recommendation

Update the joplin package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
joplin
Anything's wrong? Let us know Last updated on April 23, 2024

This issue is available in SmartScanner Professional

See Pricing