← Back

CVE-2020-20269

nvd nist
Published: Jan 26, 2021Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

A specially crafted Markdown document could cause the execution of malicious JavaScript code in Caret Editor before 4.0.0-rc22.

Affected (25)

Products: Caret: Caret
1 product
Caret
Configuration A
25 vulnerable
Vulnerable SoftwareAffected Versions
Caret
Up to 3.4.6
Version 4.0.0 beta0
Version 4.0.0 beta1
Version 4.0.0 beta2
Version 4.0.0 beta3
Version 4.0.0 beta4
Version 4.0.0 beta5
Version 4.0.0 beta6
Version 4.0.0 beta7
Version 4.0.0 beta8
Version 4.0.0 beta9
Version 4.0.0 rc10
Version 4.0.0 rc11
Version 4.0.0 rc12
Version 4.0.0 rc13
Version 4.0.0 rc14
Version 4.0.0 rc15
Version 4.0.0 rc16
Version 4.0.0 rc17
Version 4.0.0 rc18
Version 4.0.0 rc19
Version 4.0.0 rc1
Version 4.0.0 rc20
Version 4.0.0 rc21
Version 4.0.0 rc2

References (12)

Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Product
Source: cve@mitre.org
Issue TrackingThird Party Advisory
Source: cve@mitre.org
Release NotesThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Product
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory

Timeline

No history available yet.