CVE-2024-31784 - CERT CVE
ID CVE-2024-31784
Sažetak An issue in Typora v.1.8.10 and before, allows a local attacker to obtain sensitive information and execute arbitrary code via a crafted payload to the src component.
Reference
CVSS
Base: 6.1
Impact: 4.7
Exploitability:1.3
Pristup
VektorSloženostAutentikacija
LOCAL LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
HIGH LOW LOW
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:L
Zadnje važnije ažuriranje 10-06-2025 - 01:14
Objavljeno 16-04-2024 - 04:15