Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-47839 2 Marky Project, Vesparny 2 Marky, Marky 2026-03-05 7.2 High
Marky 0.0.1 contains a persistent cross-site scripting vulnerability that allows attackers to inject malicious scripts into markdown files. Attackers can upload crafted markdown files with embedded JavaScript payloads that execute when the file is opened, potentially enabling remote code execution.
CVE-2022-26205 1 Marky Project 1 Marky 2024-11-21 9.8 Critical
Marky commit 3686565726c65756e was discovered to contain a remote code execution (RCE) vulnerability via the Display text fields. This vulnerability allows attackers to execute arbitrary code via injection of a crafted payload.