Vulnerabilities
Vulnerable Software
Typora:  >> Typora  >> 1.1.4  Security Vulnerabilities
Typora through 1.3.8 allows XSS if a document containing an SVG element with an attacker-controlled onload attribute is exported and then used at a victim's origin.
CVSS Score
6.1
EPSS Score
0.003
Published
2022-12-23
Typora versions prior to 1.4.4 fails to properly neutralize JavaScript code, which may result in executing JavaScript code contained in the file when opening a file with the affected product.
CVSS Score
6.1
EPSS Score
0.005
Published
2022-12-07


Contact Us

Shodan ® - All rights reserved