QID 981224
QID 981224: Nodejs (npm) Security Update for marked (GHSA-7px7-7xjx-hxm8)
marked version 0.3.6 and earlier is vulnerable to an XSS attack in the data: URI parser.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-7px7-7xjx-hxm8 for updates pertaining to this vulnerability.
Vendor References
- GHSA-7px7-7xjx-hxm8 -
github.com/advisories/GHSA-7px7-7xjx-hxm8
CVEs related to QID 981224
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-7px7-7xjx-hxm8 | marked |
|