VYPR
Critical severity9.0NVD Advisory· Published Apr 28, 2022· Updated Jun 17, 2026

CVE-2022-28101

CVE-2022-28101

Description

Turtlapp Turtle Note v0.7.2.6 does not filter the tag during markdown parsing, allowing attackers to execute HTML injection.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Lyonbros/Turtl2 versions
    cpe:2.3:a:lyonbros:turtl:0.7.2.6:*:*:*:-:android:*:*+ 1 more
    • cpe:2.3:a:lyonbros:turtl:0.7.2.6:*:*:*:-:android:*:*
    • cpe:2.3:a:lyonbros:turtl:0.7.2.6:*:*:*:-:ios:*:*
  • Turtlapp/Turtle Notedescription
  • Range: =0.7.2.6

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.