Medium severity6.1NVD Advisory· Published Jun 21, 2021· Updated Jun 17, 2026
CVE-2021-28833
CVE-2021-28833
Description
Increments Qiita::Markdown before 0.34.0 allows XSS via a crafted gist link, a different vulnerability than CVE-2021-28796.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
qiita-markdownRubyGems | < 0.34.0 | 0.34.0 |
Affected products
3- Qiita/Qiita::Markdowndescription
Patches
Vulnerability mechanics
References
6- github.com/advisories/GHSA-9p29-94hp-8rvcghsaADVISORY
- github.com/increments/qiita-markdown/releasesnvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2021-28833ghsaADVISORY
- vuln.ryotak.me/advisories/50nvdThird Party AdvisoryWEB
- github.com/increments/qiita-markdown/commit/b5d4e60bf537ceb177e70bf91653d29575e1aa21ghsaWEB
- github.com/increments/qiita-markdown/compare/v0.33.0...v0.34.0ghsaWEB
News mentions
0No linked articles in our index yet.