MEDIUM
SimpleMDE 1.11.2 has XSS via an onerror attribute of a crafted IMG element, or via certain input with [ and ( characters, which is mishandled during construction of an A element
Published Nov 7, 2018
6.1
MEDIUMCVSS 3.0
EPSS 0.79%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.