PT-2024-11600 · Obsidian · Obsidian Mind Map

Jojenho

·

Published

2024-01-05

·

Updated

2025-05-08

·

CVE-2022-36677

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Obsidian Mind Map version 1.1.0
Description The issue allows attackers to execute arbitrary code via a crafted payload injected into an uploaded document.
Recommendations For Obsidian Mind Map version 1.1.0, update to a version that contains a fix for this issue, if available. If no fixed version is available, consider restricting the upload of documents to trusted sources to minimize the risk of exploitation.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-36677

Affected Products

Obsidian Mind Map