Security Advisories (2)
CVE-2020-8127 (2020-02-28)

Insufficient validation in cross-origin communication (postMessage) in reveal.js version 3.9.1 and earlier allow attackers to perform cross-site scripting attacks.

CVE-2022-0776 (2022-03-01)

Cross-site Scripting (XSS) - DOM in GitHub repository hakimel/reveal.js prior to 4.3.0.

NAME

revealup - Web app for showing Markdown as slides

SYNOPSIS

revealup serve -p 5000

Options:
  -p        HTTP Port Number
  --theme   CSS filename or path