Description
pandao Editor.md 1.5.0 allows XSS via an attribute of an ABBR or SUP element.
Remediation
References
https://github.com/pandao/editor.md/issues/715
Related Vulnerabilities
CVE-2023-35142 Vulnerability in maven package com.checkmarx.jenkins:checkmarx
CVE-2022-25851 Vulnerability in npm package jpeg-js
CVE-2021-4264 Vulnerability in npm package dustjs-linkedin
CVE-2023-22465 Vulnerability in maven package org.http4s:http4s-core
CVE-2023-46654 Vulnerability in maven package org.jenkins-ci.plugins:electricflow