Description
Cross-site Scripting (XSS) - Stored in GitHub repository vanessa219/vditor prior to 1.0.34.
Remediation
References
https://github.com/vanessa219/vditor/commit/8d4d0889dd72b2f839e93a49db3da3a370416c7d
https://huntr.dev/bounties/67b980af-7357-4879-9448-a926c6474225
Related Vulnerabilities
CVE-2021-37694 Vulnerability in npm package @asyncapi/java-spring-cloud-stream-template
CVE-2022-24827 Vulnerability in maven package com.yahoo.elide:elide-datastore-aggregation
CVE-2023-50449 Vulnerability in maven package com.jfinal:jfinal
CVE-2021-4133 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2023-26149 Vulnerability in maven package org.webjars.npm:quill-mention