Vulnerabilities > Typora > Typora > 0.9.79

DATE CVE VULNERABILITY TITLE RISK
2023-06-20 CVE-2020-21058 Cross-site Scripting vulnerability in Typora 0.9.79
Cross Site Scripting vulnerability in Typora v.0.9.79 allows a remote attacker to execute arbitrary code via the mermaid sytax.
network
low complexity
typora CWE-79
6.1
2023-03-07 CVE-2023-1003 Code Injection vulnerability in Typora
A vulnerability, which was classified as critical, was found in Typora up to 1.5.5 on Windows.
local
low complexity
typora CWE-94
7.8