Описание
Pandao Editor.md vulnerable to cross-site scripting (XSS) in editor parameter
Cross-site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script to the editor parameter.
Пакеты
Наименование
editor.md
npm
Затронутые версииВерсия исправления
<= 1.5.0
Отсутствует
Связанные уязвимости
CVSS3: 6.1
nvd
почти 3 года назад
Cross Site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script to the editor parameter.