Vulnerabilities

Last updated 3 hours ago
Filters
Severity
Critical Severity
CVSS Score Range: 9.0–10.0
Critical severity vulnerabilities (CVSS 9.0–10.0). These represent the highest impact issues.
High Severity
CVSS Score Range: 7.0–8.9
High severity vulnerabilities (CVSS 7.0–8.9). Serious vulnerabilities that should be prioritized soon after critical fixes.
Medium Severity
CVSS Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
Low Severity
CVSS Score Range: < 4.0
Low severity vulnerabilities (CVSS < 4.0). Hygiene issues that can accumulate but pose lower immediate risk.
Unknown Severity
CVSS Score Range: No score
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
Package Summary Severity Published Modified
katex KaTeX: Existing prototype pollution can bypass trust restrictions Low Risk 3.0 9 hours ago 8 hours ago
katex KaTeX's maxExpand bypassed by Unicode sub/superscripts Medium Risk 6.5 2 years ago 26 days ago
katex KaTeX's `\includegraphics` does not escape filename Medium Risk 6.3 2 years ago 26 days ago
katex KaTeX missing normalization of the protocol in URLs allows bypassing forbidden protocols Medium Risk 5.5 2 years ago 26 days ago
katex KaTeX's maxExpand bypassed by `\edef` Medium Risk 6.5 2 years ago 8 months ago
katex KaTeX \htmlData does not validate attribute names Medium Risk 6.3 1 year ago 1 year ago
markdown-it-katex Cross-Site Scripting in markdown-it-katex High Risk 8.0 6 years ago 5 years ago