Typora是一款编辑器。 Typora 1.7.0-dev版本之前存在路径遍历漏洞,该漏洞源于存在路径处理不当漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-2317 | 8.6 HIGH | Typora DOM-Based Cross-site Scripting leading to Remote Code Execution |
| CVE-2023-2316 | 7.4 HIGH | Typora Local File Disclosure |
No comments yet