remarkable_project remarkable CVE Vulnerabilities (4)

CVEs: 4 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting remarkable_project remarkable (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2019-12043 In remarkable 1.7.1, lib/parser_inline.js mishandles URL filtering, which allows attackers to trigger XSS via unprintable characters, as demonstrated by a \x0ejavascript: URL. [email protected] 6.1 0.86% 2019-05-13 2024-11-21
CVE-2019-12041 lib/common/html_re.js in remarkable 1.7.1 allows Regular Expression Denial of Service (ReDoS) via a CDATA section. [email protected] 7.5 1.32% 2019-05-13 2024-11-21
CVE-2017-16006 Remarkable is a markdown parser. In versions 1.6.2 and lower, remarkable allows the use of `data:` URIs in links and can therefore execute javascript. [email protected] 6.1 0.98% 2018-06-04 2024-11-21
CVE-2014-10065 Certain input when passed into remarkable before 1.4.1 will bypass the bad protocol check that disallows the javascript: scheme allowing for javascript: url's to be injected into the rendered content. [email protected] 6.1 0.97% 2018-05-31 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence