Notable v1.8.4 does not filter text editing, allowing attackers to execute arbitrary code via a crafted payload injected into the Title text field.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Notable | Notable | 1.8.4 (including) | 1.8.4 (including) |
References