Skip to content
Noroxi

inkdrop records

4 published records for vendor inkdrop.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

4 records
  • Inkdrop versions prior to v5.3.1 allows an attacker to execute arbitrary OS commands on the system where it runs by loading a file or code s

    HighCVSS 7.8No exploitEPSS 1%

    inkdrop · inkdropJun 27, 2021

  • Inkdrop prior to v5.6.0 allows a local attacker to conduct a code injection attack by having a legitimate user open a specially crafted mark

    HighCVSS 7.8No exploitEPSS 0%

    inkdrop · inkdropOct 30, 2023

  • An issue in Inkdrop v5.4.1 allows attackers to execute arbitrary commands via uploading a crafted markdown file.

    MediumCVSS 6.1No exploitEPSS 1%

    inkdrop · inkdropJan 9, 2023

  • A cross-site scripting (XSS) vulnerability in Markdown-Nice v1.8.22 allows attackers to execute arbitrary web scripts or HTML via a crafted

    MediumCVSS 5.4No exploitEPSS 0%

    inkdrop · markdown niceSep 9, 2022