Description
Typora v1.0.0 through v1.7 version (below) Markdown editor has a cross-site scripting (XSS) vulnerability, which allows attackers to execute arbitrary code by uploading Markdown files.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T02:27:53.567Z
Reserved: 2024-04-23T00:00:00.000Z
Link: CVE-2024-33300
Updated: 2024-08-02T02:27:53.567Z
Status : Analyzed
Published: 2024-05-01T19:15:26.910
Modified: 2025-06-10T18:07:52.360
Link: CVE-2024-33300
No data.
OpenCVE Enrichment
No data.
Weaknesses