Description
pandao Editor.md 1.5.0 allows XSS via an attribute of an ABBR or SUP element.
Remediation
References
https://github.com/pandao/editor.md/issues/715
Related Vulnerabilities
CVE-2023-27479 Vulnerability in maven package org.xwiki.platform:xwiki-platform-panels-ui
CVE-2019-1010260 Vulnerability in maven package com.github.shyiko:ktlint
CVE-2021-23346 Vulnerability in npm package html-parse-stringify2
CVE-2021-32622 Vulnerability in npm package matrix-react-sdk
CVE-2023-26156 Vulnerability in maven package org.webjars.npm:chromedriver