Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Kramdown before 2.3.1 does not restrict Rouge formatters to the Rouge::Formatters namespace, and thus arbitrary classes can be instantiated.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Thomas Leitner kramdown 安全漏洞
Vulnerability Description
Thomas Leitner kramdown是 (Thomas Leitner)开源的一个应用程序。提供一个快速的纯Ruby Markdown超集转换器,使用严格的语法定义并支持几个常用扩展。 Kramdown before 2.3.1 存在安全漏洞,该漏洞源于Kramdown没有将Rouge格式化器限制为Rouge:: formatters名称空间。
CVSS Information
N/A
Vulnerability Type
N/A