CVE-2023-26302: Executablebooks Markdown-It-Py
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input.
Affected products
- Executablebooks Markdown-It-Py: before 2.2.0 (fixed in 2.2.0)
Published 2023-02-22. Last modified 2026-06-17.