Junglewise Threat Intelligence

CVE-2023-28626: Comrak vulnerable to quadratic runtime issues when parsing Markdown (GHSL-2023-047)

CVE-2023-28626 · Severity: low · CVSS 3.1 · Published 2023-03-28

Technologies: comrak (crates.io). Vendors: crates.io.

Executive brief

Comrak vulnerable to quadratic runtime issues when parsing Markdown (GHSL-2023-047)

Affected products

  • crates.io comrak

Related threats