CVE-2019-19619: Documize
Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.
domain/section/markdown/markdown.go in Documize before 3.5.1 mishandles untrusted Markdown content. This was addressed by adding the bluemonday HTML sanitizer to defend against XSS.
Affected products
- Documize Documize: before 3.5.1 (fixed in 3.5.1)
Published 2019-12-06. Last modified 2026-06-17.