Vulnerabilities
Vulnerable Software
Zettlr:  >> Zettlr  >> 1.8.7  Security Vulnerabilities
No filtering of cross-site scripting (XSS) payloads in the markdown-editor in Zettlr 1.8.7 allows attackers to perform remote code execution via a crafted file.
CVSS Score
6.1
EPSS Score
0.006
Published
2021-06-18
Cross-site scripting vulnerability in Zettlr from 0.20.0 to 1.8.8 allows an attacker to execute an arbitrary script by loading a file or code snippet containing an invalid iframe into Zettlr.
CVSS Score
6.1
EPSS Score
0.003
Published
2021-05-27


Contact Us

Shodan ® - All rights reserved