We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Not sure if already being addressed, but my David DM shows "SECURITY VULNERABILITIES IN DEPENDENCIES" because of Marked v0.3.3.
It links to this article: https://nodesecurity.io/advisories/marked_redos (CVE-PENDING). Which states:
Marked 0.3.3 and earlier is vulnerable to regular expression denial of service (ReDoS) when certain types of input are passed in to be parsed.
The text was updated successfully, but these errors were encountered:
see #497
But idk if the author is still supporting this library, so you are better looking into alternatives.
Sorry, something went wrong.
Successfully merging a pull request may close this issue.
Not sure if already being addressed, but my David DM shows "SECURITY VULNERABILITIES IN DEPENDENCIES" because of Marked v0.3.3.
It links to this article: https://nodesecurity.io/advisories/marked_redos (CVE-PENDING). Which states:
The text was updated successfully, but these errors were encountered: