Description
A cross-site scripting (XSS) vulnerability in Markdown-Nice v1.8.22 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Community Posting field.
Remediation
References
https://github.com/mdnice/markdown-nice/issues/327
Related Vulnerabilities
CVE-2021-42227 Vulnerability in npm package kindeditor
CVE-2022-41713 Vulnerability in npm package deep-object-diff
CVE-2022-2900 Vulnerability in npm package parse-url
CVE-2023-49374 Vulnerability in maven package com.jfinal:jfinal
CVE-2020-11971 Vulnerability in maven package org.apache.camel:camel-api