No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 05 Mar 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:typora:typora:1.7.4:*:*:*:*:*:*:* |
Mon, 15 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 14 Dec 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Typora
Typora typora |
|
| Vendors & Products |
Typora
Typora typora |
Fri, 12 Dec 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Typora 1.7.4 contains a command injection vulnerability in the PDF export preferences that allows attackers to execute arbitrary system commands. Attackers can inject malicious commands into the 'run command' input field during PDF export to achieve remote code execution. | |
| Title | Typora 1.7.4 OS Command Injection via Export PDF Preferences | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-07T14:08:28.519Z
Reserved: 2025-10-22T21:37:48.606Z
Link: CVE-2024-14010
Updated: 2025-12-15T17:59:13.886Z
Status : Deferred
Published: 2025-12-12T20:15:38.520
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-14010
No data.
OpenCVE Enrichment
Updated: 2025-12-14T21:15:53Z