Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Chrisjsewell

#18937de 53,638
14.2CVSS total
Vulnerabilidades · 2
Alta
2
PT-2023-20600
7.1
2023-02-22
Pypi · Markdown-It-Py · CVE-2023-26302
**Name of the Vulnerable Software and Affected Versions** markdown-it-py versions prior to 2.2.0 **Description** Denial of service could be caused to the command line interface of markdown-it-py if an attacker was allowed to use invalid UTF-8 characters as input. **Recommendations** For versions prior to 2.2.0, update to version 2.2.0 or later to resolve the issue. As a temporary workaround, consider restricting input to valid UTF-8 characters to minimize the risk of exploitation.
PT-2023-20601
7.1
2023-02-22
Pypi · Markdown-It-Py · CVE-2023-26303
**Name of the Vulnerable Software and Affected Versions** markdown-it-py versions prior to 2.2.0 **Description** A denial of service could be caused if an attacker is allowed to force null assertions with specially crafted input. **Recommendations** For versions prior to 2.2.0, update to version 2.2.0 or later to resolve the issue.