Vulnerabilities > Redcarpet Project

DATE CVE VULNERABILITY TITLE RISK
2021-01-11 CVE-2020-26298 Injection vulnerability in multiple products
Redcarpet is a Ruby library for Markdown processing.
network
low complexity
redcarpet-project debian CWE-74
5.4
2015-07-14 CVE-2015-5147 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Redcarpet Project Redcarpet 3.3.1
Stack-based buffer overflow in the header_anchor function in the HTML renderer in Redcarpet before 3.3.2 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
network
low complexity
redcarpet-project CWE-119
7.5