CVE-2020-21058: XSS
Published Jun 20, 2023
·Updated
Cross Site Scripting vulnerability in Typora v.0.9.79 allows a remote attacker to execute arbitrary code via the mermaid sytax.
Affected Software
1 affected component
Typora typora=0.9.79
Remediation
Patch Available
Event History
Jun 20, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2020-21058?
CVE-2020-21058 is a Cross Site Scripting vulnerability in Typora v.0.9.79 that allows a remote attacker to execute arbitrary code via the mermaid syntax.
2
How severe is CVE-2020-21058?
CVE-2020-21058 has a severity score of 6.1, which is considered medium severity.
3
What software version is affected by CVE-2020-21058?
Typora v.0.9.79 is affected by CVE-2020-21058.
4
How can a remote attacker exploit CVE-2020-21058?
A remote attacker can exploit CVE-2020-21058 by using the mermaid syntax to inject and execute arbitrary code.
5
Are there any references to learn more about CVE-2020-21058?
Yes, you can find more information about CVE-2020-21058 at the following reference: (link to reference)