CVE-2024-7738

Severity CVSS v4.0:
MEDIUM
Type:
CWE-21 Path Equivalence
Publication date:
13/08/2024
Last modified:
02/09/2025

Description

A vulnerability, which was classified as problematic, has been found in yzane vscode-markdown-pdf 1.5.0. Affected by this issue is some unknown functionality of the component Markdown File Handler. The manipulation leads to pathname traversal. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:yzane:markdown_pdf:1.5.0:*:*:*:*:visual_studio_code:*:*