{"id":"CVE-2026-86303","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-86303","summary":"A vulnerability was determined in 92181 markdown up to 058cab0cb7fb245a0ccc6b8446963ff8d573558f. Affected by this issue is the function lds of the file md.c. Executing a manipulation…","details":"A vulnerability was determined in 92181 markdown up to 058cab0cb7fb245a0ccc6b8446963ff8d573558f. Affected by this issue is the function lds of the file md.c. Executing a manipulation can lead to out-of-bounds read. The attack can be executed remotely. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. This patch is called c000d2f9cf390c315378d3717cf20911cf3e80a6. A patch should be applied to remediate this issue.","published":"2026-09-07T13:20:39.587","modified":"2026-09-07T13:20:39.587","cvss":{"score":7.3,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":{"url":"https://github.com/92181/markdown/commit/c000d2f9cf390c315378d3717cf20911cf3e80a6","label":"92181/markdown@c000d2f"},"references":[{"type":"WEB","url":"https://github.com/92181/markdown/"},{"type":"WEB","url":"https://github.com/92181/markdown/commit/c000d2f9cf390c315378d3717cf20911cf3e80a6"},{"type":"WEB","url":"https://github.com/92181/markdown/issues/1"},{"type":"WEB","url":"https://github.com/92181/markdown/pull/2"},{"type":"WEB","url":"https://vuldb.com/cve/CVE-2026-86303"},{"type":"WEB","url":"https://vuldb.com/submit/907499"},{"type":"WEB","url":"https://vuldb.com/vuln/399467"},{"type":"WEB","url":"https://vuldb.com/vuln/399467/cti"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-09-07T13:20:39.587"}}