CVE-2025-60312: Rems Markdown To Html Converter

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Sourcecodester Markdown to HTML Converter v1.0 is vulnerable to a Cross-Site Scripting (XSS) in the "Markdown Input" field, allowing a remote attacker to inject arbitrary HTML/JavaScript code that executes in the victim's browser upon clicking the "Convert to HTML" button.

Affected products

  • Rems Markdown To Html Converter: version 1.0 only

Published 2025-10-07. Last modified 2026-06-17.