Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-59924

26 дней назад

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes user-supplied include paths without verifying that the result remains within the intended markdown directory, allowing crafted include paths to access files outside that directory when markdown files are processed using md.read(). This issue is fixed in version 3.3.0.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2026-59924

26 дней назад

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes user-supplied include paths without verifying that the result remains within the intended markdown directory, allowing crafted include paths to access files outside that directory when markdown files are processed using md.read(). This issue is fixed in version 3.3.0.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-59924

26 дней назад

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes user-supplied include paths without verifying that the result remains within the intended markdown directory, allowing crafted include paths to access files outside that directory when markdown files are processed using md.read(). This issue is fixed in version 3.3.0.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2026-59924

26 дней назад

Mistune is a Python Markdown parser with renderers and plugins. Prior ...

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-r4rv-85jg-w4mf

14 дней назад

Mistune: Arbitrary File Read via Include directive path traversal

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21339-1

20 дней назад

Security update for python-mistune

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-59924

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes user-supplied include paths without verifying that the result remains within the intended markdown directory, allowing crafted include paths to access files outside that directory when markdown files are processed using md.read(). This issue is fixed in version 3.3.0.

CVSS3: 5.9
0%
Низкий
26 дней назад
redhat логотип
CVE-2026-59924

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes user-supplied include paths without verifying that the result remains within the intended markdown directory, allowing crafted include paths to access files outside that directory when markdown files are processed using md.read(). This issue is fixed in version 3.3.0.

CVSS3: 5.9
0%
Низкий
26 дней назад
nvd логотип
CVE-2026-59924

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes user-supplied include paths without verifying that the result remains within the intended markdown directory, allowing crafted include paths to access files outside that directory when markdown files are processed using md.read(). This issue is fixed in version 3.3.0.

CVSS3: 5.9
0%
Низкий
26 дней назад
debian логотип
CVE-2026-59924

Mistune is a Python Markdown parser with renderers and plugins. Prior ...

CVSS3: 5.9
0%
Низкий
26 дней назад
github логотип
GHSA-r4rv-85jg-w4mf

Mistune: Arbitrary File Read via Include directive path traversal

CVSS3: 5.9
0%
Низкий
14 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21339-1

Security update for python-mistune

20 дней назад

Уязвимостей на страницу