Unknown · Mixmark-Io Turndown · CVE-2025-9670
**Name of the Vulnerable Software and Affected Versions**
mixmark-io turndown versions through 7.2.1
**Description**
A security flaw exists in mixmark-io turndown, potentially leading to inefficient regular expression complexity through manipulation of an unknown function within the src/commonmark-rules.js file. This issue can be initiated remotely, and the exploit is publicly available.
**Recommendations**
Update mixmark-io turndown to a version newer than 7.2.1.