vendor:
Markdown Editor
by:
8bitsec
7.8
CVSS
HIGH
Arbitrary Code Execution
CWE
Product Name: Markdown Editor
Affected Version From: 2000.7.4
Affected Version To: 2000.7.4
Patch Exists: NO
Related CWE: CVE-2023-31873
CPE: a:gin:markdown_editor:0.7.4
Platforms Tested: Mac OS 13
2023
Gin Markdown Editor v0.7.4 (Electron) – Arbitrary Code Execution
A vulnerability was discovered on Gin markdown editor v0.7.4 allowing a user to execute arbitrary code by opening a specially crafted file.
Mitigation:
Update to a patched version of the software or avoid opening untrusted markdown files.