RubyGems package
qiita-markdown
pkg:gem/qiita-markdown
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-28833 | — | < 0.34.0 | 0.34.0 | Jun 21, 2021 | Increments Qiita::Markdown before 0.34.0 allows XSS via a crafted gist link, a different vulnerability than CVE-2021-28796. | ||
| CVE-2021-28796 | — | < 0.33.0 | 0.33.0 | Mar 18, 2021 | Increments Qiita::Markdown before 0.33.0 allows XSS in transformers. |
- CVE-2021-28833Jun 21, 2021affected < 0.34.0fixed 0.34.0
Increments Qiita::Markdown before 0.34.0 allows XSS via a crafted gist link, a different vulnerability than CVE-2021-28796.
- CVE-2021-28796Mar 18, 2021affected < 0.33.0fixed 0.33.0
Increments Qiita::Markdown before 0.33.0 allows XSS in transformers.