Cross-site scripting (XSS) vulnerability in plugins/markdownplugin/markdown.plugin.php in b2evolution before 6.8.5 allows remote authenticated users to inject arbitrary web script or HTML via a javascript: URL.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-5553.json"