← back
CVE-2017-16019

CVE-2017-16019

EPSS 0.9%CWE-79
GitBook is a command line tool (and Node.js library) for building beautiful books using GitHub/Git and Markdown (or AsciiDoc). Stored Cross-Site-Scripting (XSS) is possible in GitBook before 3.2.2 by including code outside of backticks in any ebook. This code will be executed on the online reader.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →