Description
Cross Site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script to the editor parameter.
Remediation
References
https://github.com/pandao/editor.md/issues/700
Related Vulnerabilities
CVE-2020-26296 Vulnerability in maven package org.webjars.bower:vega
CVE-2022-41940 Vulnerability in maven package org.webjars.npm:engine.io
CVE-2020-11113 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2021-21141 Vulnerability in maven package org.webjars.npm:electron
CVE-2022-37767 Vulnerability in maven package io.pebbletemplates:pebble