A vulnerability was found in JP1016 Markdown-Electron and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to code injection. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. VDB-221738 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/JP1016/Markdown-Electron/issues/3 | Exploit Issue Tracking Third Party Advisory |
https://vuldb.com/?ctiid.221738 | Third Party Advisory |
https://vuldb.com/?id.221738 | Third Party Advisory |
Configurations
History
03 Mar 2023, 16:36
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CPE | cpe:2.3:a:markdown-electron_project:markdown-electron:-:*:*:*:*:*:*:* | |
References | (MISC) https://github.com/JP1016/Markdown-Electron/issues/3 - Exploit, Issue Tracking, Third Party Advisory | |
References | (MISC) https://vuldb.com/?ctiid.221738 - Third Party Advisory | |
References | (MISC) https://vuldb.com/?id.221738 - Third Party Advisory |
24 Feb 2023, 14:02
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-02-24 09:15
Updated : 2024-05-17 02:17
NVD link : CVE-2023-1005
Mitre link : CVE-2023-1005
CVE.ORG link : CVE-2023-1005
JSON object : View
Products Affected
markdown-electron_project
- markdown-electron
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')