Vulnerabilities > Markdown PDF Project

DATE CVE VULNERABILITY TITLE RISK
2023-04-04 CVE-2023-0835 Cross-site Scripting vulnerability in Markdown-Pdf Project Markdown-Pdf 11.0.0
markdown-pdf version 11.0.0 allows an external attacker to remotely obtain arbitrary local files.
network
low complexity
markdown-pdf-project CWE-79
8.2
2018-07-20 CVE-2018-3770 Path Traversal vulnerability in Markdown-Pdf Project Markdown-Pdf
A path traversal exists in markdown-pdf version <9.0.0 that allows a user to insert a malicious html code that can result in reading the local files.
local
low complexity
markdown-pdf-project CWE-22
5.5