Vulnerabilities
Vulnerable Software
Digitalocean:  Security Vulnerabilities
In the @digitalocean/do-markdownit package through 1.16.1 (in npm), the callout and fence_environment plugins perform .includes substring matching if allowedClasses or allowedEnvironments is a string (instead of an array).
CVSS Score
5.4
EPSS Score
0.001
Published
2025-09-19
Authentication is globally bypassed in github.com/nanobox-io/golang-nanoauth between v0.0.0-20160722212129-ac0cc4484ad4 and v0.0.0-20200131131040-063a3fb69896 if ListenAndServe is called with an empty token.
CVSS Score
9.1
EPSS Score
0.001
Published
2022-12-27


Contact Us

Shodan ® - All rights reserved