VYPR

hackage package

cmark-gfm

pkg:hackage/cmark-gfm

Vulnerabilities (1)

  • CVE-2023-24824Mar 31, 2023
    affected >= 0.1.0, < 0.2.6fixed 0.2.6

    cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. A polynomial time complexity issue in cmark-gfm may lead to unbounded resource exhaustion and subsequent denial of service. This CVE covers quadratic complexity issues when parsing t