We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
A Markdown to HTML converter written in Javascript
Library home page: https://registry.npmjs.org/showdown/-/showdown-1.9.1.tgz
Path to dependency file: /package.json
Path to vulnerable library: /package.json
Dependency Hierarchy:
Found in HEAD commit: a8118062a4f94961a9234ac9e7347750199ee23f
Found in base branch: main
An issue in the anchors subparser of Showdownjs versions <= 2.1.0 could allow a remote attacker to cause denial of service conditions.
Publish Date: 2024-02-26
URL: CVE-2024-1899
Base Score Metrics:
The text was updated successfully, but these errors were encountered:
Swiddis
Successfully merging a pull request may close this issue.
CVE-2024-1899 - Medium Severity Vulnerability
Vulnerable Library - showdown-1.9.1.tgz
A Markdown to HTML converter written in Javascript
Library home page: https://registry.npmjs.org/showdown/-/showdown-1.9.1.tgz
Path to dependency file: /package.json
Path to vulnerable library: /package.json
Dependency Hierarchy:
Found in HEAD commit: a8118062a4f94961a9234ac9e7347750199ee23f
Found in base branch: main
Vulnerability Details
An issue in the anchors subparser of Showdownjs versions <= 2.1.0 could allow a remote attacker to cause denial of service conditions.
Publish Date: 2024-02-26
URL: CVE-2024-1899
CVSS 3 Score Details (5.3)
Base Score Metrics:
The text was updated successfully, but these errors were encountered: