@ckeditor/ckeditor5-markdown-gfm
npm3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting @ckeditor/ckeditor5-markdown-gfmpage 1 of 1
- CVE-2021-21254MEDIUMCVSS 6.5EG 6.5✓ Fixed in 25.0.02021-01-29
CKEditor 5 is an open source rich text editor framework with a modular architecture. The CKEditor 5 Markdown plugin (@ckeditor/ckeditor5-markdown-gfm) before version 25.0.0 has a regex denial of service (ReDoS) vulnerability. The vulnerabi…
- CVE-2021-21391MEDIUMCVSS 6.5EG 6.5✓ Fixed in 27.0.02021-04-29
CKEditor 5 provides a WYSIWYG editing solution. This CVE affects the following npm packages: ckeditor5-engine, ckeditor5-font, ckeditor5-image, ckeditor5-list, ckeditor5-markdown-gfm, ckeditor5-media-embed, ckeditor5-paste-from-office, and…
- CVE-2022-31175MEDIUMCVSS 5.8EG 5.8✓ Fixed in 35.0.12022-08-03
CKEditor 5 is a JavaScript rich text editor. A cross-site scripting vulnerability has been discovered affecting three optional CKEditor 5's packages in versions prior to 35.0.1. The vulnerability allowed to trigger a JavaScript code after …
Check whether @ckeditor/ckeditor5-markdown-gfm is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for @ckeditor/ckeditor5-markdown-gfm CVEs against the assets you own.
Start Free Scan →