MEDIUM6.1
GHSA-4jjv-p8x9-rrf7
Joplin Cross-site Scripting vulnerability
Quick fix
GHSA-4jjv-p8x9-rrf7 — joplin: upgrade to the fixed version with the command below.
npm install joplin@2.11.5Details
Joplin before 2.11.5 allows XSS via an AREA element of an image map.
Are you affected?
Enter the version of the package you're using.