| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| github.com/answerdev/answer | go | < 1.0.6 | 1.0.6 |
The vulnerability stems from improper input sanitization in bio/description fields. The patch replaces Markdown2HTML with Markdown2BasicHTML which adds bluemonday sanitization. This indicates:
KEV Misses 88% of Exploited CVEs- Get the report