Skip to content

Fix ReDoS vulnerability by upgrading markdown-it from 14.1.0 to 14.1.1#2089

Merged
AJIXuMuK merged 1 commit intopnp:devfrom
akshataggrwal:fix/markdown-it-version
Feb 28, 2026
Merged

Fix ReDoS vulnerability by upgrading markdown-it from 14.1.0 to 14.1.1#2089
AJIXuMuK merged 1 commit intopnp:devfrom
akshataggrwal:fix/markdown-it-version

Conversation

@akshataggrwal
Copy link

Q A
Bug fix? [ ]
New feature? [ ]
New sample? [ ]
Related issues? fixes #X, partially #Y, mentioned in #Z

What's in this Pull Request?

This PR addresses a Regular Expression Denial of Service (ReDoS) vulnerability identified in markdown-it@14.1.0, which is currently referenced in the project dependencies.

Copy link

@github-actions github-actions bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you for the first contribution to this project.

@AJIXuMuK AJIXuMuK added this to the 3.24.0 milestone Feb 28, 2026
@AJIXuMuK AJIXuMuK merged commit 89d2959 into pnp:dev Feb 28, 2026
1 check passed
@AJIXuMuK
Copy link
Collaborator

Thank you @akshataggrwal !

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants