CVE-2023-31194 is an improper array index validation vulnerability in the GraphPlanar::Write functionality of Diagon v1.0.139. This flaw allows for memory corruption when a victim opens a specially crafted markdown file. With a CVSS score of 7.8 (High), it presents a significant risk, requiring user interaction but offering high impact on confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.0.139CPE matchmatch criteria | cpe:2.3:a:diagon_project:diagon:1.0.139:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.