Skip to content

Update kramdown Security Dependency #72

@elloboblanco

Description

@elloboblanco

I tried to do this with the instructions from Slate (https://github.com/slatedocs/slate/wiki/Updating-Slate) but because this repo is not a clone of the original Slate docs the upgrade was very perilous.

It should also be worth noting that Slate has the same vulnerability but Middleman (the library that Slate uses that actually uses kramdown) has the vulnerability patched. But Slate ... does not.

See slatedocs/slate#1303 for the Slate issue I opened, and see middleman/middleman@d7f0ed0 for the commit where Middleman fixed this vulnerability.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't workinggood first issueGood for newcomers

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions