Description
Remarkable is a markdown parser. In versions 1.6.2 and lower, remarkable allows the use of `data:` URIs in links and can therefore execute javascript.
Remediation
References
https://github.com/jonschlinkert/remarkable/issues/227
https://nodesecurity.io/advisories/319
Related Vulnerabilities
CVE-2022-43418 Vulnerability in maven package org.jenkins-ci.plugins:katalon
CVE-2007-6433 Vulnerability in maven package org.jboss.seam:jboss-seam
CVE-2022-45392 Vulnerability in maven package io.jenkins.plugins:cavisson-ns-nd-integration
CVE-2022-0671 Vulnerability in maven package org.eclipse.lemminx:lemminx-parent
CVE-2021-23337 Vulnerability in maven package org.webjars.npm:lodash.template