Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

github логотип

GHSA-5wmx-573v-2qwq

5 месяцев назад

Python-Markdown has an Uncaught Exception

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2025-69534

5 месяцев назад

Python-Markdown version 3.8 contain a vulnerability where malformed HTML-like sequences can cause html.parser.HTMLParser to raise an unhandled AssertionError during Markdown parsing. Because Python-Markdown does not catch this exception, any application that processes attacker-controlled Markdown may crash. This enables remote, unauthenticated Denial of Service in web applications, documentation systems, CI/CD pipelines, and any service that renders untrusted Markdown. The issue was acknowledged by the vendor and fixed in version 3.8.1. This issue causes a remote Denial of Service in any application parsing untrusted Markdown, and can lead to Information Disclosure through uncaught exceptions.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2025-69534

5 месяцев назад

Python-Markdown version 3.8 contain a vulnerability where malformed HTML-like sequences can cause html.parser.HTMLParser to raise an unhandled AssertionError during Markdown parsing. Because Python-Markdown does not catch this exception, any application that processes attacker-controlled Markdown may crash. This enables remote, unauthenticated Denial of Service in web applications, documentation systems, CI/CD pipelines, and any service that renders untrusted Markdown. The issue was acknowledged by the vendor and fixed in version 3.8.1. This issue causes a remote Denial of Service in any application parsing untrusted Markdown, and can lead to Information Disclosure through uncaught exceptions.

CVSS3: 8.2
EPSS: Низкий
nvd логотип

CVE-2025-69534

5 месяцев назад

Python-Markdown version 3.8 contain a vulnerability where malformed HTML-like sequences can cause html.parser.HTMLParser to raise an unhandled AssertionError during Markdown parsing. Because Python-Markdown does not catch this exception, any application that processes attacker-controlled Markdown may crash. This enables remote, unauthenticated Denial of Service in web applications, documentation systems, CI/CD pipelines, and any service that renders untrusted Markdown. The issue was acknowledged by the vendor and fixed in version 3.8.1. This issue causes a remote Denial of Service in any application parsing untrusted Markdown, and can lead to Information Disclosure through uncaught exceptions.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-69534

5 месяцев назад

Python-Markdown version 3.8 contain a vulnerability where malformed HT ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0846-1

5 месяцев назад

Security update for python-Markdown

EPSS: Низкий
rocky логотип

RLSA-2026:19366

2 месяца назад

Important: python-markdown security update

EPSS: Низкий
rocky логотип

RLSA-2026:19155

2 месяца назад

Important: python-markdown security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19366

около 1 месяца назад

ELSA-2026-19366: python-markdown security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-5wmx-573v-2qwq

Python-Markdown has an Uncaught Exception

CVSS3: 7.5
1%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2025-69534

Python-Markdown version 3.8 contain a vulnerability where malformed HTML-like sequences can cause html.parser.HTMLParser to raise an unhandled AssertionError during Markdown parsing. Because Python-Markdown does not catch this exception, any application that processes attacker-controlled Markdown may crash. This enables remote, unauthenticated Denial of Service in web applications, documentation systems, CI/CD pipelines, and any service that renders untrusted Markdown. The issue was acknowledged by the vendor and fixed in version 3.8.1. This issue causes a remote Denial of Service in any application parsing untrusted Markdown, and can lead to Information Disclosure through uncaught exceptions.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-69534

Python-Markdown version 3.8 contain a vulnerability where malformed HTML-like sequences can cause html.parser.HTMLParser to raise an unhandled AssertionError during Markdown parsing. Because Python-Markdown does not catch this exception, any application that processes attacker-controlled Markdown may crash. This enables remote, unauthenticated Denial of Service in web applications, documentation systems, CI/CD pipelines, and any service that renders untrusted Markdown. The issue was acknowledged by the vendor and fixed in version 3.8.1. This issue causes a remote Denial of Service in any application parsing untrusted Markdown, and can lead to Information Disclosure through uncaught exceptions.

CVSS3: 8.2
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-69534

Python-Markdown version 3.8 contain a vulnerability where malformed HTML-like sequences can cause html.parser.HTMLParser to raise an unhandled AssertionError during Markdown parsing. Because Python-Markdown does not catch this exception, any application that processes attacker-controlled Markdown may crash. This enables remote, unauthenticated Denial of Service in web applications, documentation systems, CI/CD pipelines, and any service that renders untrusted Markdown. The issue was acknowledged by the vendor and fixed in version 3.8.1. This issue causes a remote Denial of Service in any application parsing untrusted Markdown, and can lead to Information Disclosure through uncaught exceptions.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
debian логотип
CVE-2025-69534

Python-Markdown version 3.8 contain a vulnerability where malformed HT ...

CVSS3: 7.5
1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0846-1

Security update for python-Markdown

1%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:19366

Important: python-markdown security update

1%
Низкий
2 месяца назад
rocky логотип
RLSA-2026:19155

Important: python-markdown security update

1%
Низкий
2 месяца назад
oracle-oval логотип
ELSA-2026-19366

ELSA-2026-19366: python-markdown security update (IMPORTANT)

около 1 месяца назад

Уязвимостей на страницу