Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6862
HistoryJun 27, 2018 - 9:06 a.m.

Cross-site Scripting (XSS)

2018-06-2709:06:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.001 Low

EPSS

Percentile

35.4%

joplin is vulnerable to cross-site scripting (XSS) attacks. The library does not sanitize input when converting markdown files to html, allowing a malicious user to inject and execute arbitrary Javascript.

CPENameOperatorVersion
joplinle1.0.106

0.001 Low

EPSS

Percentile

35.4%

Related for VERACODE:6862