markdown-it-py
Python port of markdown-it. Markdown parsing, done right!
Activity
- Latest release
- 4mo ago
- Total releases
- 45
- Cadence
- ~4 days
- Last 12 months
- 2
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Mar 25, 2020
| Version | Released | |
|---|---|---|
4.2.0
minor
| ||
4.1.0
minor
| ||
4.0.0
major
| ||
3.0.0
major
| ||
2.2.0
minor
| ||
2.1.0
minor
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
2.0.1
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
2.0.0
major
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
1.1.0
minor
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
1.0.0
major
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
1.0.0b3
pre
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
1.0.0b2
pre
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
1.0.0b1
pre
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.6.2
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.6.1
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.6.0
minor
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.8
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.7
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.6
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.5
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.4
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.3
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.2
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.1
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.5.0
minor
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.9
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.8
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.7
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.6
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.5
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.4
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.3
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.2
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.1
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.4.0
minor
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.3.3
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.3.2
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.3.1
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.3.0
minor
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.2.3
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.2.2
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.2.1
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.2.0
minor
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.1.1
patch
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev | ||
0.1.0
initial
2 CVEs
CVE-2023-26302
GHSA-jrwr-5x3p-hvc3
PYSEC-2023-23
Feb 23, 2023
markdown-it-py Denial of Service vulnerability in the command line interface
High
Network
Low
Low
None
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev
CVE-2023-26303
GHSA-vrjv-mxr7-vjf8
PYSEC-2023-24
Feb 23, 2023
markdown-it-py Denial of Service vulnerability
High
Network
Low
Low
None
Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input. Affected versions
0.1.0
0.1.1
0.2.0
0.2.1
0.2.2
0.2.3
0.3.0
0.3.1
0.3.2
0.3.3
0.4.0
0.4.1
+ 28 more Show less
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
0.4.7
0.4.8
0.4.9
0.5.0
0.5.1
0.5.2
0.5.3
0.5.4
0.5.5
0.5.6
0.5.7
0.5.8
0.6.0
0.6.1
0.6.2
1.0.0
1.0.0b1
1.0.0b2
1.0.0b3
1.1.0
2.0.0
2.0.1
2.1.0
Fixed in
2.2.0
References
Updated Sep 30, 2024 · Source: OSV.dev |