Critical RCE found in Obsidian Tasks plugin
4 points
2 hours ago
| 1 comment
| zeroquarry.com
| HN
eskibars
2 hours ago
[-]
We found a critical RCE in the popular Obsidian Tasks plugin. It's now been fixed, but wanted to let others know to update ASAP. A malicious markdown file can trigger the RCE
reply