CVE-2018-1000534: Cross-site Scripting
(updated )
Joplin contains an XSS evolving into code execution due to enabled nodeIntegration for that particular BrowserWindow instance where XSS was identified from vulnerability in the Note content field.
References
Code Behaviors & Features
Detect and mitigate CVE-2018-1000534 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →