CVE-2021-21306
08.02.2021, 22:15
Marked is an open-source markdown parser and compiler (npm package "marked"). In marked from version 1.1.1 and before version 2.0.0, there is a Regular expression Denial of Service vulnerability. This vulnerability can affect anyone who runs user generated code through marked. This vulnerability is fixed in version 2.0.0.Enginsight
Vendor | Product | Version |
---|---|---|
marked_project | marked | 1.1.1 ≤ 𝑥 < 2.0.0 |
𝑥
= Vulnerable software versions

Debian Releases
References