Количество 2
Количество 2
CVE-2022-41709
больше 3 лет назад
Markdownify version 1.4.1 allows an external attacker to execute arbitrary code remotely on any client attempting to view a malicious markdown file through Markdownify. This is possible because the application has the "nodeIntegration" option enabled.
CVSS3: 7.8
EPSS: Низкий
GHSA-c942-mfmp-p4fh
больше 3 лет назад
Markdownify subject to Remote Code Execution via malicious markdown file
CVSS3: 7.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-41709 Markdownify version 1.4.1 allows an external attacker to execute arbitrary code remotely on any client attempting to view a malicious markdown file through Markdownify. This is possible because the application has the "nodeIntegration" option enabled. | CVSS3: 7.8 | 0% Низкий | больше 3 лет назад | |
GHSA-c942-mfmp-p4fh Markdownify subject to Remote Code Execution via malicious markdown file | CVSS3: 7.8 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20