Description
Cross Site Scripting (XSS) vulnerability in pandao editor.md thru 1.5.0 allows attackers to inject arbitrary web script or HTML via crafted markdown text.
Remediation
References
https://github.com/pandao/editor.md/issues/985
Related Vulnerabilities
CVE-2020-6459 Vulnerability in npm package electron
CVE-2022-0436 Vulnerability in npm package grunt
CVE-2021-41183 Vulnerability in maven package org.webjars.npm:jquery-ui
CVE-2023-33202 Vulnerability in maven package org.bouncycastle:bc-fips-debug
CVE-2023-30609 Vulnerability in npm package matrix-react-sdk