CVE-2019-15499
EUVD-2019-648823.08.2019, 04:15
CodiMD 1.3.1, when Safari is used, allows XSS via an IFRAME element with allow-top-navigation in the sandbox attribute, in conjunction with a data: URL.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hackmd | codimd | 1.3.1 |
𝑥
= Vulnerable software versions