Medium severity6.1NVD Advisory· Published Aug 23, 2019· Updated Jun 17, 2026
CVE-2019-15499
CVE-2019-15499
Description
CodiMD 1.3.1, when Safari is used, allows XSS via an IFRAME element with allow-top-navigation in the sandbox attribute, in conjunction with a data: URL.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- CodiMD/CodiMDdescription
Patches
Vulnerability mechanics
References
1- github.com/hackmdio/codimd/issues/1263nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.