Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jedixak

#42932of 53,632
6.1Total CVSS
Vulnerabilities · 1
PT-2019-19892
6.1
2019-03-15
None · Simple-Markdown · CVE-2019-9844
**Name of the Vulnerable Software and Affected Versions** simple-markdown versions prior to 0.4.4 **Description** The issue is related to insufficient input sanitization, which allows Cross-Site Scripting (XSS) attacks. This can be exploited through input of links containing `data` or `vbscript` URIs and a base64-encoded payload. **Recommendations** Upgrade to version 0.4.4 or later.