{"id":"GHSA-h6mq-3cj6-h738","aliases":[],"url":"https://o3.security/vulnerability/GHSA-h6mq-3cj6-h738","summary":"Reverse Tabnabbing in showdown","details":"Versions of `showdown` prior to 1.9.1 are vulnerable to [Reverse Tabnabbing](https://www.owasp.org/index.php/Reverse_Tabnabbing). The package uses `target='_blank'` in anchor tags, allowing attackers to access `window.opener` for the original page when opening links. This is commonly used for phishing attacks.\n\n\n## Recommendation\n\nUpgrade to version 1.9.1 or later.","published":"2020-09-03T23:21:16Z","modified":"2021-10-01T16:12:36Z","cvss":{"score":3.1,"severity":"LOW","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"npm","name":"showdown","fixedVersion":"1.9.1"}],"fix":{"url":"https://github.com/showdownjs/showdown/pull/670","label":"showdownjs/showdown#670"},"references":[{"type":"WEB","url":"https://github.com/showdownjs/showdown/pull/670"},{"type":"WEB","url":"https://github.com/showdownjs/showdown/commit/1cd281f0643ef613dc1d36847d4c6cbb22501d91"},{"type":"PACKAGE","url":"https://github.com/showdownjs/showdown"},{"type":"WEB","url":"https://snyk.io/vuln/SNYK-JS-SHOWDOWN-469487"},{"type":"WEB","url":"https://www.npmjs.com/advisories/1302"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2021-10-01T16:12:36Z"}}