CVE-2018-19658

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
02/03/2020
Last modified:
08/09/2021

Description

The Markdown editor in YXBJ before 8.3.2 on macOS has stored XSS. This behavior may be encountered by some Evernote users; however, it is a vulnerability in YXBJ, not a vulnerability in Evernote.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:evernote:yinxiang_biji:*:*:*:*:*:*:*:* 8.3.2 (excluding)
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools