jbt / markdown-editor

Live (Github-flavored) Markdown Editor
http://jbt.github.com/markdown-editor
ISC License
2.82k stars 643 forks source link

🚨 Potential Cross-site Scripting (XSS) - Stored (CWE-79) #131

Open huntr-helper opened 3 years ago

huntr-helper commented 3 years ago

👋 Hello, @jbt - a potential medium severity Cross-site Scripting (XSS) - Stored (CWE-79) vulnerability in your repository has been disclosed to us.

Next Steps

1️⃣ Visit https://huntr.dev/bounties/1-other-jbt/markdown-editor for more advisory information.

2️⃣ Sign-up to validate or speak to the researcher for more assistance.

3️⃣ Propose a patch or outsource it to our community - whoever fixes it gets paid.


Confused or need more help?


This issue was automatically generated by huntr.dev - a bug bounty board for securing open source code.