Vulnerability Details CVE-2020-16608
Notable 1.8.4 allows XSS via crafted Markdown text, with resultant remote code execution (because nodeIntegration in webPreferences is true).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.043
EPSS Ranking 89.9%
CVSS Severity
CVSS v3 Score 9.6
CVSS v2 Score 9.3
Products affected by CVE-2020-16608
-
cpe:2.3:a:notable:notable:1.8.4