CVE-2022-25069
EUVD-2022-2981305.03.2022, 01:15
Mark Text v0.16.3 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to perform remote code execution (RCE) via injecting a crafted payload into /lib/contentState/pasteCtrl.js.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| marktext | marktext | 0.16.3 |
𝑥
= Vulnerable software versions