Security Advisory

CVE-2022-25069

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-05 00:29:01
Last updated 2024-08-03 04:29:01
Assigner mitre
State PUBLISHED

Description

Mark Text v0.16.3 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to perform remote code execution (RCE) via injecting a crafted payload into /lib/contentState/pasteCtrl.js.