Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Byte16384

#24550of 56,326
10Total CVSS
Vulnerabilities · 1
PT-2026-47023
10
2026-06-05
Unknown · Markdown Preview Enhanced · CVE-2026-49492
**Name of the Vulnerable Software and Affected Versions** Markdown Preview Enhanced versions prior to 0.8.28 **Description** On Windows, the software opens external files and links from the preview through a shell without validating untrusted inputs from the markdown document. This allows for the injection of operating system commands when a crafted markdown document is previewed. The issue involves the following vulnerable attributes - diagram filename - imported file paths - `latex engine` code-chunk attribute **Recommendations** Update to version 0.8.28.