5
CVSSv2

CVE-2021-26813

Published: 03/03/2021 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

markdown2 >=1.0.1.18, fixed in 2.4.0, is affected by a regular expression denial of service vulnerability. If an attacker provides a malicious string, it can make markdown2 processing difficult or delayed for an extended period of time.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

markdown2 project markdown2

fedoraproject fedora 32

fedoraproject fedora 33

fedoraproject fedora 34

Vendor Advisories

Debian Bug report logs - #984668 python-markdown2: CVE-2021-26813 Package: src:python-markdown2; Maintainer for src:python-markdown2 is Debian Python Team <team+python@trackerdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 6 Mar 2021 20:42:02 UTC Severity: important Tags: security, ups ...
python-markdown2 >=10118, fixed in 240, is affected by a regular expression denial of service vulnerability If an attacker provides a malicious string, it can make markdown2 processing difficult or delayed for an extended period of time ...