Medium severity6.1NVD Advisory· Published Nov 7, 2018· Updated Jun 17, 2026
CVE-2018-19056
CVE-2018-19056
Description
pandao Editor.md 1.5.0 has DOM XSS via input starting with a "<<" substring, which is mishandled during construction of an A element.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- ghsa-coords
Patches
Vulnerability mechanics
References
3- github.com/pandao/editor.md/issues/634nvdExploitIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-x3g3-334f-q6h4ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-19056ghsaADVISORY
News mentions
0No linked articles in our index yet.