vue-markdown-editor icon indicating copy to clipboard operation
vue-markdown-editor copied to clipboard

x

Open hktalent opened this issue 2 years ago • 0 comments

[HIGH]XSS Security Vulnerabilities

Description Impact

[HIGH]XSS Security Vulnerabilities PoC

<image src =q onerror=alert(8)>

Patches

1.7.11 Workarounds

upgrade > 1.7.11

References

https://cwe.mitre.org/data/definitions/79.html

For more information

demo https://github.com/hktalent/vue-markdown-editor/security/advisories/GHSA-m75r-2c5x-vp96 https://code-farmer-i.github.io/vue-markdown-editor/examples/base-editor.html image

hktalent avatar May 23 '22 02:05 hktalent