Fedora Account System
Red Hat Associate
Red Hat Customer
A flaw was found in nodejs-simple-markdown before version 0.4.4. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) through the data of a vbscript link when base64 encoded. Upstream issue/patch: https://github.com/Khan/simple-markdown/pull/63 https://github.com/Khan/simple-markdown/pull/63/commits/a15cddf65215a39f2a31606873b89563db94de1d
Created nodejs-simple-markdown tracking bugs for this issue: Affects: fedora-all [bug 1695304]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.