Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-59925

Опубликовано: 08 июл. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, long sequences of well-formed double-asterisk or triple-asterisk emphasis pairs around a character cause quadratic work in src/mistune/inline_parser.py because the parser scans forward for matching close markers from every potential opening run, allowing denial of service in default Mistune parsing. This issue is fixed in version 3.3.0.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mistune_project:mistune:*:*:*:*:*:*:*:*
Версия до 3.3.0 (исключая)

EPSS

Процентиль: 34%
0.0041
Низкий

7.5 High

CVSS3

Дефекты

CWE-407
CWE-407

Связанные уязвимости

CVSS3: 7.5
ubuntu
24 дня назад

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, long sequences of well-formed double-asterisk or triple-asterisk emphasis pairs around a character cause quadratic work in src/mistune/inline_parser.py because the parser scans forward for matching close markers from every potential opening run, allowing denial of service in default Mistune parsing. This issue is fixed in version 3.3.0.

CVSS3: 6.5
redhat
24 дня назад

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, long sequences of well-formed double-asterisk or triple-asterisk emphasis pairs around a character cause quadratic work in src/mistune/inline_parser.py because the parser scans forward for matching close markers from every potential opening run, allowing denial of service in default Mistune parsing. This issue is fixed in version 3.3.0.

msrc
22 дня назад

inline_parser: quadratic-time parsing on long runs of `**x**` and `***x***` emphasis pairs

CVSS3: 7.5
debian
24 дня назад

Mistune is a Python Markdown parser with renderers and plugins. Prior ...

CVSS3: 7.5
github
12 дней назад

Mistune inline_parser: quadratic-time parsing on long runs of `**x**` and `***x***` emphasis pairs

EPSS

Процентиль: 34%
0.0041
Низкий

7.5 High

CVSS3

Дефекты

CWE-407
CWE-407