Security Advisory

CVE-2022-40011

6.1
MEDIUM

Vulnerability Description

Typora through 1.3.8 allows XSS if a document containing an SVG element with an attacker-controlled onload attribute is exported and then used at a victim's origin.
Published Date December 23, 2022
Official Source NIST NVD Advisory