A vulnerability was found in Marked versions >=0.1.3 <0.6.2. A Regular Expression Denial of Service (ReDoS) in the inline.text regex that may take quadratic time to scan for potential email addresses starting at every point. Uptream Patch: https://github.com/markedjs/marked/pull/1460
Created marked tracking bugs for this issue: Affects: epel-all [bug 1702320] Affects: fedora-all [bug 1702319] Created nodejs-marked tracking bugs for this issue: Affects: fedora-all [bug 1702321]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.