OSV 1.4.0 · github-reviewed · 修改于 2021-09-24 04:56
发布时间
2020-09-01 06:52
GitHub 审查时间
2020-09-01 02:08
NVD 发布时间
—
源文件
advisories/github-reviewed/2020/08/GHSA-9cw2-jqp5-7x39/GHSA-9cw2-jqp5-7x39.json
Versions 0.3.0 and earlier of marked are affected by two cross-site scripting vulnerabilities, even when sanitize: true is set.
The attack vectors for this vulnerability are GFM Codeblocks and JavaScript URLs.
Upgrade to version 0.3.1 or later.