CVE-2020-18737: XSS
Published Feb 5, 2021
·Updated
An issue was discovered in Typora 0.9.67. There is an XSS vulnerability that causes Remote Code Execution.
Affected Software
1 affected component
Typora typora=0.9.67
Event History
Feb 5, 2021
CVE Published
via MITRE·03:17 PM
Data Sourced
via MITRE·03:17 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-18737.
2
What is the severity of CVE-2020-18737?
The severity of CVE-2020-18737 is medium (6.1).
3
What is the affected software version for CVE-2020-18737?
The affected software version for CVE-2020-18737 is Typora 0.9.67.
4
What is the CWE ID for CVE-2020-18737?
The CWE ID for CVE-2020-18737 is CWE-79.
5
How can I fix the XSS vulnerability in Typora 0.9.67?
To fix the XSS vulnerability in Typora 0.9.67, it is recommended to update to a patched version provided by Typora.