Fast math typesetting for the web.
83%
Total Score
66
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2025-23207 katex is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.12.0 - 0.16.20. | 0.12.0 - 0.16.20 | Medium |
CVE-2024-28246 katex is vulnerable to Incomplete List of Disallowed Inputs in versions 0.11.0 - 0.16.10. | 0.11.0 - 0.16.10 | Medium |
CVE-2024-28245 katex is vulnerable to Improper Encoding or Escaping of Output in versions 0.11.0 - 0.16.10. | 0.11.0 - 0.16.10 | Medium |
CVE-2024-28244 katex is vulnerable to Unchecked Input for Loop Condition in versions 0.15.4 - 0.16.10. | 0.15.4 - 0.16.10 | Medium |
CVE-2024-28243 katex is vulnerable to Unchecked Input for Loop Condition in versions 0.12.0 - 0.16.10. | 0.12.0 - 0.16.10 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
commander Version ^8.3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant