Moeditor 0.2.0 contains a persistent cross-site scripting vulnerability that allows attackers to store malicious payloads within markdown files. Attackers can upload specially crafted markdown files with embedded JavaScript that execute when opened, potentially enabling remote code execution on the victim's system.
Metrics
Affected Vendors & Products
References
History
Fri, 16 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 16 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Moeditor 0.2.0 contains a persistent cross-site scripting vulnerability that allows attackers to store malicious payloads within markdown files. Attackers can upload specially crafted markdown files with embedded JavaScript that execute when opened, potentially enabling remote code execution on the victim's system. | |
| Title | Moeditor 0.2.0 - Persistent Cross-Site Scripting | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-16T21:09:34.290Z
Reserved: 2026-01-14T17:11:19.901Z
Link: CVE-2021-47840
Updated: 2026-01-16T21:00:10.950Z
Status : Received
Published: 2026-01-16T19:16:09.700
Modified: 2026-01-16T22:16:17.443
Link: CVE-2021-47840
No data.
OpenCVE Enrichment
No data.