ZeroHour

CVE-2025-55474

PoC ×2
CVSS 3.1
6.1 medium
EPSS
<1%p30
Published
()
Modified
Description

Many Notes 0.10.1 is vulnerable to Cross Site Scripting (XSS), which allows malicious Markdown files to execute JavaScript when viewed.

Vendors
brufdev
Products
many notes
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.