Markdown Explorer 0.1.1 contains a cross-site scripting vulnerability that allows attackers to inject malicious code through file uploads and editor inputs. Attackers can upload markdown files with embedded JavaScript payloads that execute in the application's privileged renderer context, allowing code execution on the host.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-16 19:16
Updated : 2026-06-17 04:18
NVD link : CVE-2021-47836
Mitre link : CVE-2021-47836
CVE.ORG link : CVE-2021-47836
JSON object : View
Products Affected
No product.
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
