CVE-2023-2971: Typora Local File Disclosure
Published Aug 19, 2023
·Updated
Improper path handling in Typora before 1.7.0-dev on Windows and Linux allows a crafted webpage to access local files and exfiltrate them to remote web servers via "typora://app/typemark/". This vulnerability can be exploited if a user opens a malicious markdown file in Typora, or copies text from a malicious webpage and paste it into Typora.
Affected Software
3 affected components
Typora Typora<=1.6.7
Linux Linux kernel
Microsoft Windows
Event History
Aug 19, 2023
CVE Published
via MITRE·05:45 AM
Data Sourced
via MITRE·05:45 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-2971.
2
What is the severity of CVE-2023-2971?
The severity of CVE-2023-2971 is medium with a CVSS score of 6.3.
3
Which software versions are affected by CVE-2023-2971?
Typora versions up to and including 1.6.7 are affected by CVE-2023-2971.
4
How can the vulnerability be exploited?
The vulnerability can be exploited by opening a malicious markdown file in Typora or copying text from a malicious webpage.
5
Is Linux Kernel or Microsoft Windows affected by CVE-2023-2971?
No, Linux Kernel and Microsoft Windows are not affected by CVE-2023-2971.