CVE-2022-25069

Publication date

2022-03-05 00:29:01

Family

mitre

State

PUBLISHED

Description

Mark Text v0.16.3 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to perform remote code execution (RCE) via injecting a crafted payload into /lib/contentState/pasteCtrl.js.