All 3 CVE vulnerabilities found in markdownify-mcp, with AI-generated Chinese analysis, references, and POCs.
Vendor: zcaceres
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-14702 | zcaceres markdownify-mcp webpage-to-markdown Markdownify.ts saveToTempFile random values CWE-330 | 2.5 | Low | 2026-07-05 |
| CVE-2026-14699 | zcaceres markdownify-mcp Markdownify.ts assertPathAllowed symlink CWE-61 | 3.3 | Low | 2026-07-05 |
| CVE-2025-58358 | Markdownify is vulnerable to command injection through pptx-to-markdown tool CWE-77 | 7.5 | High | 2025-09-04 |
All 3 known CVE vulnerabilities affecting markdownify-mcp with full Chinese analysis, references, and POCs where available.