mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-30 04:49:42 +00:00
672 B
672 B
CVE-2020-28459
Description
This affects all versions of package markdown-it-decorate. An attacker can add an event handler or use javascript:xxx for the link.
POC
Reference
Github
No PoCs found on GitHub currently.