Description
Cross-site Scripting (XSS) - Stored in GitHub repository vanessa219/vditor prior to 1.0.34.
Remediation
References
https://github.com/vanessa219/vditor/commit/8d4d0889dd72b2f839e93a49db3da3a370416c7d
https://huntr.dev/bounties/67b980af-7357-4879-9448-a926c6474225
Related Vulnerabilities
CVE-2018-11784 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2007-4556 Vulnerability in maven package opensymphony:xwork
CVE-2020-36732 Vulnerability in maven package org.webjars.npm:crypto-js
CVE-2018-1000136 Vulnerability in maven package org.webjars.npm:electron
CVE-2021-46708 Vulnerability in maven package org.webjars.bower:swagger-ui