flexmark-java icon indicating copy to clipboard operation
flexmark-java copied to clipboard

Is there a security contact?

Open halkeye opened this issue 4 years ago • 0 comments

WhiteSourceSoftware contacted me about an xss issue in https://github.com/jenkinsci/markdown-formatter-plugin which uses flexmark. From my testing I think its something that needs to be handled in flexmark. I have a test case and they gave me a great report I can forward, but I don't want to make it public without them.

halkeye avatar Jan 21 '21 20:01 halkeye