Low severity3.3NVD Advisory· Published Aug 13, 2024· Updated Jun 17, 2026
CVE-2024-7738
CVE-2024-7738
Description
A vulnerability, which was classified as problematic, has been found in yzane vscode-markdown-pdf 1.5.0. Affected by this issue is some unknown functionality of the component Markdown File Handler. The manipulation leads to pathname traversal. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.
Affected products
3- cpe:2.3:a:yzane:markdown_pdf:1.5.0:*:*:*:*:visual_studio_code:*:*
<=1.5.0+ 1 more
- (no CPE)range: <=1.5.0
- (no CPE)range: 1.5.0
Patches
Vulnerability mechanics
References
5- vuldb.comnvdThird Party Advisory
- vuldb.comnvdThird Party Advisory
- github.com/abhi-ingle/Vulnerability-Research/blob/main/POC/Arbitrary%20File%20Read/file_read_report.mdnvdBroken Link
- github.com/abhi-ingle/Vulnerability-Research/blob/main/POC/Arbitrary%20File%20Read/poc_arbitrary_file_read.mp4nvdBroken Link
- vuldb.comnvdPermissions Required
News mentions
0No linked articles in our index yet.