Skip to content

Conversation

@joelpittet
Copy link
Contributor

❯ composer audit
Found 1 security vulnerability advisory affecting 1 package:
+-------------------+----------------------------------------------------------------------------------+
| Package           | league/commonmark                                                                |
| Severity          | medium                                                                           |
| CVE               | CVE-2025-46734                                                                   |
| Title             | league/commonmark contains a XSS vulnerability in Attributes extension           |
| URL               | https://github.com/advisories/GHSA-3527-qv2q-pfvx                                |
| Affected versions | <2.7.0                                                                           |
| Reported at       | 2025-05-05T20:40:36+00:00                                                        |
+-------------------+----------------------------------------------------------------------------------+

Fixes XSS vulnerability in attributes

@joelpittet joelpittet requested a review from snipe as a code owner May 6, 2025 18:03
@snipe snipe merged commit e400389 into grokability:develop May 6, 2025
9 checks passed
@snipe
Copy link
Member

snipe commented May 6, 2025

Thank you, as always!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants