QID 980841
QID 980841: Nodejs (npm) Security Update for editor.md (GHSA-vjcj-5g2r-vxqc)
Pandao Editor.md 1.5.0 allows XSS via crafted attributes of an invalid IMG element.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-vjcj-5g2r-vxqc for updates pertaining to this vulnerability.
Vendor References
- GHSA-vjcj-5g2r-vxqc -
github.com/advisories/GHSA-vjcj-5g2r-vxqc
CVEs related to QID 980841
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-vjcj-5g2r-vxqc | editor.md |
|