Описание
Joplin is vulnerable to arbitrary code execution
Joplin v2.8.8 allows attackers to execute arbitrary commands via a crafted payload injected into the Node titles.
Пакеты
Наименование
joplin
npm
Затронутые версииВерсия исправления
< 2.9.1
2.9.1
Связанные уязвимости
CVSS3: 9
nvd
больше 3 лет назад
Joplin v2.8.8 allows attackers to execute arbitrary commands via a crafted payload injected into the Node titles.
CVSS3: 9
debian
больше 3 лет назад
Joplin v2.8.8 allows attackers to execute arbitrary commands via a cra ...