Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 18 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Codigo Markdown Editor 1.0.1 contains a code execution vulnerability that allows attackers to run arbitrary system commands by crafting a malicious markdown file. Attackers can embed a video source with an onerror event that executes shell commands through Node.js child_process module when the file is opened. | |
| Title | Codigo Markdown Editor 1.0.1 Electron Arbitrary Code Execution via Markdown File | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-07T14:07:58.860Z
Reserved: 2025-12-16T19:22:09.997Z
Link: CVE-2023-53940
Updated: 2025-12-18T20:19:36.556Z
Status : Deferred
Published: 2025-12-18T20:15:52.470
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-53940
No data.
OpenCVE Enrichment
No data.