Vulnerabilities
Vulnerable Software
Boostio:  >> Boostnote  >> 0.11.15  Security Vulnerabilities
There is XSS in browser/components/MarkdownPreview.js in BoostIO Boostnote 0.11.15 via a label named flowchart, sequence, gallery, or chart, as demonstrated by a crafted SRC attribute of an IFRAME element, a different vulnerability than CVE-2019-12136.
CVSS Score
5.4
EPSS Score
0.002
Published
2019-05-19
There is XSS in BoostIO Boostnote 0.11.15 via a label named mermaid, as demonstrated by a crafted SRC attribute of an IFRAME element.
CVSS Score
5.4
EPSS Score
0.002
Published
2019-05-16


Contact Us

Shodan ® - All rights reserved