Impact
Several quadratic complexity bugs in commonmarker's underlying cmark-gfm library may lead to unbounded resource exhaustion and subsequent denial of service.
The following vulnerabilities were addressed:
For more information, consult the release notes for version 0.23.0.gfm.10 and 0.23.0.gfm.11.
Mitigation
Users are advised to upgrade to commonmarker version 0.23.9.
Impact
Several quadratic complexity bugs in commonmarker's underlying
cmark-gfmlibrary may lead to unbounded resource exhaustion and subsequent denial of service.The following vulnerabilities were addressed:
For more information, consult the release notes for version
0.23.0.gfm.10and0.23.0.gfm.11.Mitigation
Users are advised to upgrade to commonmarker version
0.23.9.