Skip to main content
Loading…
    CVE-2026-30838 — league/commonmark is a PHP Markdown parser. Prior to version 2.8.1, the DisallowedRawHtml extension can be bypassed by inserting a newline, tab, or other ASCII whitespace character between a disallowe — CVE Database · The Intelligence Room