There is XSS in BoostIO Boostnote 0.11.15 via a label named mermaid, as demonstrated by a crafted SRC attribute of an IFRAME element.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-05-16T02:55:45

Updated: 2024-08-04T23:10:30.631Z

Reserved: 2019-05-15T00:00:00

Link: CVE-2019-12136

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-05-16T03:29:00.673

Modified: 2019-05-16T17:51:20.790

Link: CVE-2019-12136

cve-icon Redhat

No data.