Vulnerability CVE-2024-31784


Published: 2024-04-16

Description:
An issue in Typora v.1.8.10 and before, allows a local attacker to obtain sensitive information and execute arbitrary code via a crafted payload to the src component.

 References:
https://github.com/0x0fc/TyporaIframe/blob/main/TyporaIframeVuln.md

Copyright 2026, cxsecurity.com

 

Back to Top