Cross Site Scripting Vulnerability in Typora by Typora Solutions
CVE-2020-18336
7.4HIGH
What is CVE-2020-18336?
A Cross Site Scripting (XSS) vulnerability has been identified in Typora version 0.9.65, where a remote attacker can exploit the PDF file exporting function. This weakness allows an attacker to inject malicious scripts into the export process, potentially exposing sensitive user data and leading to unauthorized information disclosure. Users are advised to apply necessary updates and security measures to mitigate related risks.
