← Back to CVE List

CVE-2022-40274

Published: 2022-09-30T17:15Z
Last Modified: 2024-11-21T07:21Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Gridea version 0.9.3 allows an external attacker to execute arbitrary code remotely on any client attempting to view a malicious markdown file through Gridea. This is possible because the application has the 'nodeIntegration' option enabled. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt