• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

zestedesavoir / zmarkdown / 5461120375

pending completion
5461120375

push

github

web-flow
[rebber] Fix two security flaws (#493)

1. An RCE was found in images: when an image path contained an `}`, the
LaTeX image command could be bypassed to allow malicious code injection.
2. An RCE was found in code blocks: a previous protection measure was
unsufficient, thus allowing code blocks to be escaped in LaTeX

1035 of 1132 branches covered (91.43%)

Branch coverage included in aggregate %.

4 of 4 new or added lines in 1 file covered. (100.0%)

1952 of 1979 relevant lines covered (98.64%)

2111.59 hits per line

Source File
Press 'n' to go to next uncovered line, 'b' for previous

97.3
/packages/zmarkdown/utils/latex-code.js


Source Not Available

STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2025 Coveralls, Inc