Bugs fixes in "ruby-kramdown"
Origin | Bug number | Title | Date fixed |
---|---|---|---|
CVE | CVE-2021-28834 | Kramdown before 2.3.1 does not restrict Rouge formatters to the Rouge::Formatters namespace, and thus arbitrary classes can be instantiated. | 2023-10-10 |
CVE | CVE-2021-28834 | Kramdown before 2.3.1 does not restrict Rouge formatters to the Rouge::Formatters namespace, and thus arbitrary classes can be instantiated. | 2023-10-10 |
CVE | CVE-2020-14001 | The kramdown gem before 2.3.0 for Ruby processes the template option inside Kramdown documents by default, which allows unintended read access (such | 2020-09-30 |
CVE | CVE-2020-14001 | The kramdown gem before 2.3.0 for Ruby processes the template option inside Kramdown documents by default, which allows unintended read access (such | 2020-09-30 |
About
-
Send Feedback to @ubuntu_updates