Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

凉风

Researcher from凉风刨洞安全团队
#43722of 53,633
6.1Total CVSS
Vulnerabilities · 1
PT-2023-27077
6.1
2023-09-01
Typora · Typora · CVE-2023-39703
**Name of the Vulnerable Software and Affected Versions** Typora version 1.6.7 **Description** A cross site scripting (XSS) issue in the Markdown Editor component allows attackers to execute arbitrary code via uploading a crafted Markdown file. **Recommendations** For Typora version 1.6.7, consider disabling the Markdown Editor component until a patch is available to prevent exploitation.