
Look up vulnerabilities by software, product or CVE number.
| CVE | Published | CVSS | ShadowTrackr CVSS | Summary |
|---|---|---|---|---|
CVE: CVE-2020-28459 | Published 2022-07-25 | CVSS: 7.3 | ShadowTrackr CVSS: 2.9 | Summary: This affects all versions of package markdown-it-decorate. An attacker can add an event handler or use javascript:xxx for the link. |