Skip to content

marksy & marked have been flagged to contain a RegEx service vulnerability with CVSS score of 7.5 (High) #2258

Closed
@ArmanNisch

Description

@ArmanNisch

Hi,

I did a security scan of one of our project repos and storybook/[email protected] was flagged to contain a RegEx service vulnerability via its marksy package which itself makes use of marked

The vulnerability has a reported CVSS score of 7.5 (High).

See github.com/chjj/marked/issues/937 and this node security advisories for more details.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions