Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r59m-r63f-42wc

Опубликовано: 09 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.6

Описание

A cross-site scripting (XSS) vulnerability in the component /app/marketplace.html of Logseq v0.10.9 allows attackers to execute arbitrary code via injecting arbitrary Javascript into a crafted README.md file.

A cross-site scripting (XSS) vulnerability in the component /app/marketplace.html of Logseq v0.10.9 allows attackers to execute arbitrary code via injecting arbitrary Javascript into a crafted README.md file.

EPSS

Процентиль: 20%
0.00063
Низкий

9.6 Critical

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 9.6
nvd
4 месяца назад

A cross-site scripting (XSS) vulnerability in the component /app/marketplace.html of Logseq v0.10.9 allows attackers to execute arbitrary code via injecting arbitrary Javascript into a crafted README.md file.

EPSS

Процентиль: 20%
0.00063
Низкий

9.6 Critical

CVSS3

Дефекты

CWE-79