Vulnerabilities > Joplin Project > Joplin > 2.0.7

DATE CVE VULNERABILITY TITLE RISK
2023-01-31 CVE-2022-45598 Cross-site Scripting vulnerability in Joplin Project Joplin
Cross Site Scripting vulnerability in Joplin Desktop App before v2.9.17 allows attacker to execute arbitrary code via improper santization.
network
low complexity
joplin-project CWE-79
6.1
2021-08-03 CVE-2021-37916 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin before 2.0.9 allows XSS via button and form in the note body.
network
low complexity
joplin-project CWE-79
6.1