Vendors · markdown-pdf project
Products (1)
Recent Vulnerabilities
View all 2 →CVE-2023-0835HIGH 8.2
markdown-pdf version 11.0.0 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate the Markdown content entered by the user.
CVE-2018-3770MEDIUM 5.5
A path traversal exists in markdown-pdf version <9.0.0 that allows a user to insert a malicious html code that can result in reading the local files.
