CVE-2018-1000534: XSS
Joplin version prior to 1.0.90 contains a Cross-site Scripting (XSS) evolving into code execution due to enabled nodeIntegration for that particular BrowserWindow instance where XSS was identified from vulnerability in Note content field - information on the fix can be found here https://github.com/laurent22/joplin/commit/494e235e18659574f836f84fcf9f4d4fcdcfcf89 that can result in executing unauthorized code within the rights in which the application is running. This attack appear to be exploitable via Victim synchronizing notes from the cloud services or other note-keeping services which contain malicious code. This vulnerability appears to have been fixed in 1.0.90 and later.
Other sources
Joplin version prior to 1.0.90 contains a XSS evolving into code execution due to enabled nodeIntegration for that particular BrowserWindow instance where XSS was identified from vulnerability in Note content field - information on the fix can be found here https://github.com/laurent22/joplin/commit/494e235e18659574f836f84fcf9f4d4fcdcfcf89 that can result in executing unauthorized code within the rights in which the application is running. This attack appear to be exploitable via Victim synchronizing notes from the cloud services or other note-keeping services which contain malicious code. This vulnerability appears to have been fixed in 1.0.90 and later.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1000534?
CVE-2018-1000534 is classified as a critical vulnerability due to its potential for Cross-site Scripting (XSS) leading to code execution.
How do I fix CVE-2018-1000534?
To fix CVE-2018-1000534, upgrade Joplin to version 1.0.90 or later.
What software versions are affected by CVE-2018-1000534?
CVE-2018-1000534 affects Joplin versions prior to 1.0.90.
What type of vulnerability is CVE-2018-1000534?
CVE-2018-1000534 is a Cross-site Scripting (XSS) vulnerability.
Is CVE-2018-1000534 exploitable in production environments?
Yes, CVE-2018-1000534 is exploitable in production environments if an affected version is being used.