Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-59928

Опубликовано: 08 июл. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, a Markdown document containing many repeated or distinct reference-link definitions causes quadratic work in src/mistune/block_parser.py and the ref_links environment dictionary handling, allowing denial of service through CPU exhaustion. This issue is fixed in version 3.3.0.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mistune_project:mistune:*:*:*:*:*:*:*:*
Версия до 3.3.0 (исключая)

EPSS

Процентиль: 34%
0.00413
Низкий

7.5 High

CVSS3

Дефекты

CWE-407

Связанные уязвимости

CVSS3: 7.5
ubuntu
24 дня назад

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, a Markdown document containing many repeated or distinct reference-link definitions causes quadratic work in src/mistune/block_parser.py and the ref_links environment dictionary handling, allowing denial of service through CPU exhaustion. This issue is fixed in version 3.3.0.

CVSS3: 6.5
redhat
24 дня назад

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, a Markdown document containing many repeated or distinct reference-link definitions causes quadratic work in src/mistune/block_parser.py and the ref_links environment dictionary handling, allowing denial of service through CPU exhaustion. This issue is fixed in version 3.3.0.

msrc
22 дня назад

Mistune block_parser: quadratic-time parsing on long lists of repeated reference-link definitions

CVSS3: 7.5
debian
24 дня назад

Mistune is a Python Markdown parser with renderers and plugins. Prior ...

CVSS3: 7.5
github
12 дней назад

Mistune block_parser: quadratic-time parsing on long lists of repeated reference-link definitions

EPSS

Процентиль: 34%
0.00413
Низкий

7.5 High

CVSS3

Дефекты

CWE-407