Skip to content

Update hast-util-to-mdast #933

@rakleed

Description

@rakleed

Initial checklist

Problem

A security concern was recently flagged for hast-util-to-mdast package.

Detail Value
Severity moderate
Description mdast-util-to-hast has unsanitized class attribute
Package hast-util-to-mdast
Vulnerable versions >=13.0.0, <13.2.1
Patched versions >=13.2.1
Paths .>remarkjs>hast-util-to-mdast
More info GHSA-4fh9-h7wg-q85m

Current solutions

npm audit fix

Proposed solutions

Update mdast-util-to-hast to ^13.2.1.

Metadata

Metadata

Assignees

No one assigned

    Labels

    👎 phase/noPost cannot or will not be acted on🤷 no/invalidThis cannot be acted upon

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions