Joplin 是一款开源的笔记和待办事项应用程序,它通过笔记本组织笔记和列表。在版本 3.7.13 之前,选择包含 jsoncanvas 围栏(fence)的笔记会导致以下两个组件中的白板文本和文件节点组件使用完整的 Markdown 渲染器渲染卡片内容: 这些组件通过 将生成的 HTML 插入主应用程序文档中。恶意笔记可以注入样式元素和远程 CSS 导入,从而修改受信任的应用程序界面元素、在笔记被打开时发出信号,并可能泄露已暴露的属性值。尽管内容安全策略(CSP)阻止了内联脚本的执行,因此无法实现代码执行,但攻击
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105786 | 8.5 HIGH | Joplin: Unauthenticated account takeover via an attacker-chosen application-authorisation |
| CVE-2026-105783 | 8.0 HIGH | Joplin Web Clipper pairing allows cross-origin theft of a permanent API token |
| CVE-2026-105785 | 4.8 MEDIUM | Joplin Server password reset accepts tokens issued for unrelated purposes |
No comments yet