Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-46338

Опубликовано: 16 июл. 2026
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. From 10.0.1 until 10.21.3, pymdownx.snippets uses a string-prefix containment check in SnippetPreprocessor.get_snippet_path() in pymdownx/snippets.py when restrict_base_path: True, allowing markdown snippet directives to read files from sibling paths that share the same base_path prefix, such as docs and docs_internal. This is a regression of CVE-2023-32309. This issue is fixed in version 10.21.3.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:facelessuser:pymdown_extensions:*:*:*:*:*:*:*:*
Версия от 10.0.1 (включая) до 10.21.3 (исключая)

EPSS

Процентиль: 23%
0.0031
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 4.3
ubuntu
21 день назад

PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. From 10.0.1 until 10.21.3, pymdownx.snippets uses a string-prefix containment check in SnippetPreprocessor.get_snippet_path() in pymdownx/snippets.py when `restrict_base_path: True`, allowing markdown snippet directives to read files from sibling paths that share the same base_path prefix, such as docs and docs_internal. This is a regression of CVE-2023-32309. This issue is fixed in version 10.21.3.

CVSS3: 4.3
redhat
22 дня назад

PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. From 10.0.1 until 10.21.3, pymdownx.snippets uses a string-prefix containment check in SnippetPreprocessor.get_snippet_path() in pymdownx/snippets.py when `restrict_base_path: True`, allowing markdown snippet directives to read files from sibling paths that share the same base_path prefix, such as docs and docs_internal. This is a regression of CVE-2023-32309. This issue is fixed in version 10.21.3.

CVSS3: 4.3
debian
21 день назад

PyMdown Extensions is a set of extensions for the Python-Markdown mark ...

CVSS3: 4.3
github
3 месяца назад

Regression in pymdownx.snippets reintroduces sibling-prefix path traversal bypass despite restrict_base_path

EPSS

Процентиль: 23%
0.0031
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-22