GHSA-9jjj-7qhf-c5f9High
Affected versions of Flowintel allow attacker-controlled note content to be processed by Pandoc...
🔗 CVE IDs covered (1)
📋 Description
Affected versions of Flowintel allow attacker-controlled note content to be processed by Pandoc and XeLaTeX during PDF export in a way that can cause local files on the Flowintel server to be read and incorporated into the generated export.