Typora v1.0.0 through v1.7 version (below) Markdown editor has a cross-site scripting (XSS) vulnerability, which allows attackers to execute arbitrary code by uploading Markdown files.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T02:27:53.567Z
Reserved: 2024-04-23T00:00:00
Link: CVE-2024-33300
Updated: 2024-05-02T15:32:11.743Z
Status : Analyzed
Published: 2024-05-01T19:15:26.910
Modified: 2025-06-10T18:07:52.360
Link: CVE-2024-33300
No data.
OpenCVE Enrichment
No data.
Weaknesses