You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
As Surfing plugin loads a website Inside Obsidian while we use Gemini Plugin and Surfing with it. It loads an Iframe window which can trigger a XSS or a Arbitrary File Download.
Relevant Screenshot
No response
To Reproduce
No response
Obsidian Version
1.5.12
web-browser-only
Did you install only one web browser plugin?
Checklist
I updated to the latest version of the plugin.
The text was updated successfully, but these errors were encountered:
Mxfire0324
changed the title
[Bug]: By Using Surfing Plugin and Gemini XSS and XSS Can be Triggered and Also Arbitary File Upload Can be Acheived
[Bug]: By Using Surfing Plugin and Gemini XSS Can be Triggered and Also Arbitary File Upload Can be Acheived.
May 12, 2024
Mxfire0324
changed the title
[Bug]: By Using Surfing Plugin and Gemini XSS Can be Triggered and Also Arbitary File Upload Can be Acheived.
[Bug]: By Using Surfing Plugin and Gemini XSS Can be Triggered and Also Arbitary File Download Can be Acheived.
May 12, 2024
Bug Description
As Surfing plugin loads a website Inside Obsidian while we use Gemini Plugin and Surfing with it. It loads an Iframe window which can trigger a XSS or a Arbitrary File Download.
Relevant Screenshot
No response
To Reproduce
No response
Obsidian Version
1.5.12
web-browser-only
Checklist
The text was updated successfully, but these errors were encountered: