Cross Site Scripting Vulnerability in Markdown Editor of Typora
CVE-2023-39703
6.1MEDIUM
What is CVE-2023-39703?
A cross site scripting (XSS) vulnerability exists in the Markdown Editor component of Typora version 1.6.7. This flaw allows attackers to upload specially crafted Markdown files, potentially enabling them to execute arbitrary code within the application. Users of Typora should be aware of this risk and ensure that they are using the latest versions of the software.
