✗ High severity vulnerability found on [email protected]
✗ High severity vulnerability found on [email protected]
✗ High severity vulnerability found on [email protected]
We are waiting for https://github.com/chjj/marked/pull/844 to be pushed by the maintainer.
I am keeping this one open until the change is pushed, but I wanted to rename the ticket to make it more search friendly.
This seems important enough to cut a new release for. Any reason that isn't being done?
@chjj @matt- @paulirish Any word on getting a tag for this fix?
0.3.7 finally came out, and did include the previous submitted fixes. Unfortunately, there's still one high-severity vulnerability that is supposed to be addressed by the upcoming 0.3.9 release.
Believe 0.3.9 corrects all these issues. Please confirm and comment, if incorrect.
Most helpful comment
@chjj @matt- @paulirish Any word on getting a tag for this fix?