VYPR

Simple Markdown

by Khanacademy

Source repositories

CVEs (3)

  • CVE-2019-25103MedFeb 12, 2023
    risk 0.21cvss 4.3epss 0.01

    A vulnerability has been found in simple-markdown 0.5.1 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file simple-markdown.js. The manipulation leads to inefficient regular expression complexity. The attack can be launched…

  • CVE-2019-25102MedFeb 12, 2023
    risk 0.21cvss 4.3epss 0.01

    A vulnerability, which was classified as problematic, was found in simple-markdown 0.6.0. Affected is an unknown function of the file simple-markdown.js. The manipulation with the input <<<<<<<<<<:/:/:/:/:/:/:/:/:/:/ leads to inefficient regular expression complexity. It is…

  • CVE-2019-9844MedApr 9, 2019
    risk 0.00cvss 6.1epss 0.01

    simple-markdown.js in Khan Academy simple-markdown before 0.4.4 allows XSS via a data: or vbscript: URI.