Description
Cross Site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script to the editor parameter.
Remediation
References
https://github.com/pandao/editor.md/issues/700
Related Vulnerabilities
CVE-2021-28092 Vulnerability in maven package org.webjars.npm:is-svg
CVE-2022-23541 Vulnerability in npm package jsonwebtoken
CVE-2023-26473 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2023-31718 Vulnerability in npm package @frangoteam/fuxa
CVE-2023-36542 Vulnerability in maven package org.apache.nifi:nifi-hikari-dbcp-service