Unrated severityNVD Advisory· Published Jul 21, 2024· Updated Aug 1, 2024
SiYuan PDF PDF.js cross site scripting
CVE-2024-6938
Description
A vulnerability has been found in SiYuan 3.1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file PDF.js of the component PDF Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-271993 was assigned to this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- SiYuan/SiYuandescription
- Range: = 3.1.0
Patches
Vulnerability mechanics
References
5- github.com/siyuan-note/siyuan/issues/11949mitreexploitissue-tracking
- vuldb.commitrethird-party-advisory
- github.com/siyuan-note/siyuan/issues/11650mitreissue-tracking
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entry
News mentions
0No linked articles in our index yet.