Known Vulnerabilities for Mermaid by Mermaid-js
Listed below are 6 of the newest known vulnerabilities associated with "Mermaid" by "Mermaid-js".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-41149 json | Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Versions 10.9.5 and e... | Not Provided | 2026-05-22 | 2026-05-23 |
| CVE-2026-41148 json | Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Versions 10.9.5 and p... | Not Provided | 2026-05-22 | 2026-05-22 |
| CVE-2026-40322 json | SiYuan is an open-source personal knowledge management system. In versions 3.6.3 and below, Mermaid diagrams are rendered wit... | Not Provided | 2026-04-16 | 2026-04-17 |
| CVE-2026-40107 json | SiYuan is a personal knowledge management system. Prior to 3.6.4, SiYuan configures Mermaid.js with securityLevel: "loose" an... | Not Provided | 2026-04-09 | 2026-04-10 |
| CVE-2026-3254 json | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.1 that under certain conditions... | Not Provided | 2026-04-22 | 2026-04-22 |
| CVE-2024-53748 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Terry L. WP Mermaid wp-... | Not Provided | 2024-12-01 | 2026-04-23 |