GitHub Flavored Markdown is a markdown specification and parsing library with a narrowly scoped footprint centered on text rendering and document processing. The observed weakness class involves improper input validation in the parsing pipeline, reflecting the complexity of safely handling user-supplied markup syntax. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Github Flavored Markdown Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-5238MEDIUM The table extension in GitHub Flavored Markdown before version 0.29.0.gfm.1 takes O(n * n) time to parse certain inputs. An attacker could craft a markdown table which would take a | Jul 1, 2020 | 6.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Github Flavored Markdown Project.
Media articles that mention a CVE ID that affects a product developed by Github Flavored Markdown Project — matched by CVE ID, not by vendor name.