Markdown Pdf Project maintains a focused conversion tool that transforms Markdown input into PDF output, a utility present in documentation pipelines and content-generation workflows. The observed vulnerability surface reflects the parsing and rendering demands of format conversion; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Markdown Pdf Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-0835HIGH markdown-pdf version 11.0.0 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate the Markdown content en | Apr 4, 2023 | 8.2 | 25 | NO | NO |
CVE-2018-3770MEDIUM A path traversal exists in markdown-pdf version <9.0.0 that allows a user to insert a malicious html code that can result in reading the local files. | Jul 20, 2018 | 5.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Markdown Pdf Project.
Media articles that mention a CVE ID that affects a product developed by Markdown Pdf Project — matched by CVE ID, not by vendor name.