docsify icon indicating copy to clipboard operation
docsify copied to clipboard

Update marked version to 4 to avoid vulnerability

Open mrflos opened this issue 3 years ago • 0 comments

Feature request

What problem does this feature solve?

The actual dependency on marked version 1.2.9, has a vulnerability of denial of service. cf. CVE-2022-21681 Dependabot says it will be fixed if using marked >= 4.0.10

What does the proposed API look like?

How should this be implemented in your opinion?

Are you willing to work on this yourself?

I'm not an expert in js but i could try if needed

mrflos avatar Aug 08 '22 09:08 mrflos