Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Wangking1

#44136of 53,630
6.1Total CVSS
Vulnerabilities · 1
PT-2022-25166
6.1
2022-12-23
Typora · Typora · CVE-2022-40011
**Name of the Vulnerable Software and Affected Versions** typora versions through 1.38 **Description** The issue allows remote attackers to run arbitrary code via export from the editor, which is a result of a Cross Site Scripting (XSS) vulnerability. This enables attackers to execute malicious scripts on the client-side. **Recommendations** For versions through 1.38, update to a version that contains a fix for this issue to prevent remote attackers from running arbitrary code via export from the editor. At the moment, there is no information about a newer version that contains a fix for this vulnerability.