← Terug naar overzicht

A vulnerability identified as CVE-2026-86303 was discovered in the 92181 markdown library up to commit 058cab0cb7fb245a0ccc6b8446963ff8d573558f. The vulnerability affects the function 'lds' in the file md.c, where a crafted manipulation can trigger an out-of-bounds read condition. The attack can be executed remotely, increasing its risk profile. The product uses a rolling release model, making version-based tracking unavailable. A patch commit (c000d2f9cf390c315378d3717cf20911cf3e80a6) has been identified and should be applied to remediate the issue. The vulnerability is tracked on both NVD and VulDB platforms. No authentication details or CVSS scores are mentioned in the article. Users of the affected library are advised to apply the available patch immediately.

Affected products

  • 92181 markdown

Related CVE's

  • CVE-2026-86303

Categories

  • Supply Chain & Dependencies
  • Web Technologies