Python-markdown2 Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 3
    Known Exploited: 0
    0
    Critical Level Threats
    0
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-11888

    python-markdown2 through 2.3.8 allows XSS because element names are mishandled unless a \w+ match succeeds. For example, an attack might use elementname@ or elementname- with an onclick attribute.

    Last Modified: Nov 21, 2024
    Published: Apr 20, 2020

    CVE-2009-3724

    python-markdown2 before 1.0.1.14 has multiple cross-site scripting (XSS) issues.

    Last Modified: Nov 21, 2024
    Published: Jan 15, 2020

    CVE-2018-5773

    An issue was discovered in markdown2 (aka python-markdown2) through 2.3.5. The safe_mode feature, which is supposed to sanitize user input against XSS, is flawed and does not escape the input properly. With a crafted payload, XSS can be triggered, as demonstrated by omitting the final '>' character from an IMG tag.

    Last Modified: Nov 21, 2024
    Published: Jan 18, 2018
    Items Per Page
    Python-Markdown2_Project Vulnerabilities & Security CVEs | CVE-DB