Lucene search

K
cvelistMitreCVELIST:CVE-2020-11888
HistoryApr 20, 2020 - 3:48 p.m.

CVE-2020-11888

2020-04-2015:48:13
mitre
www.cve.org
1

5.9 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

72.3%

python-markdown2 through 2.3.8 allows XSS because element names are mishandled unless a \w+ match succeeds. For example, an attack might use elementname@ or elementname- with an onclick attribute.

5.9 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

72.3%