ipandao editor.md CVE Vulnerabilities (8)

CVEs: 8 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting ipandao editor.md (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 18 of 8 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2020-19660 Cross Site Scripting (XSS) pandao editor.md 1.5.0 allows attackers to execute arbitrary code via crafted linked url values. [email protected] 6.1 0.41% 2023-05-08 2025-01-29
CVE-2023-29641 Cross Site Scripting (XSS) vulnerability in pandao editor.md thru 1.5.0 allows attackers to inject arbitrary web script or HTML via crafted markdown text. [email protected] 6.1 0.43% 2023-05-01 2025-01-30
CVE-2020-19698 Cross Site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script to the editor parameter. [email protected] 6.1 0.66% 2023-04-04 2025-02-14
CVE-2020-19697 Cross Site Scripting vulnerability found in Pandao Editor.md v.1.5.0 allows a remote attacker to execute arbitrary code via a crafted script in the <iframe>src parameter. [email protected] 6.1 0.66% 2023-04-04 2025-02-14
CVE-2019-14653 pandao Editor.md 1.5.0 allows XSS via an attribute of an ABBR or SUP element. [email protected] 6.1 0.79% 2019-08-03 2024-11-21
CVE-2019-9737 Editor.md 1.5.0 has DOM-based XSS via vectors involving the '<EMBED SRC="data:image/svg+xml' substring. [email protected] 6.1 0.86% 2019-03-13 2024-11-21
CVE-2018-19056 pandao Editor.md 1.5.0 has DOM XSS via input starting with a "<<" substring, which is mishandled during construction of an A element. [email protected] 6.1 0.79% 2018-11-07 2024-11-21
CVE-2018-16330 Pandao Editor.md 1.5.0 allows XSS via crafted attributes of an invalid IMG element. [email protected] 6.1 0.86% 2018-09-02 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence