ZeroHour

CVE-2021-33295

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p56
Published
()
Modified
Description

Cross Site Scripting (XSS) vulnerability in Joplin Desktop App before 1.8.5 allows attackers to execute aribrary code due to improper sanitizing of html.

Vendors
joplin project
Products
joplin
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.