CVE-2024-28245

CVSS V2 None CVSS V3 None
Description
KaTeX is a JavaScript library for TeX math rendering on the web. KaTeX users who render untrusted mathematical expressions could encounter malicious input using `\includegraphics` that runs arbitrary JavaScript, or generate invalid HTML. Upgrade to KaTeX v0.16.10 to remove this vulnerability.
Overview
  • CVE ID
  • CVE-2024-28245
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-03-25T19:53:01.320Z
  • Last Modified Date
  • 2024-03-25T19:53:01.320Z
History
Created Old Value New Value Data Type Notes
2024-06-26 08:09:05 Added to TrackCVE