CVE-2026-86433 | PHP League CommonMark up to 2.8.3 Attributes Extension findTargetAndDirection denial of service
A vulnerability labeled as problematic has been found in PHP League CommonMark up to 2.8.3. This impacts the function AttributesListener::findTargetAndDirection of the component Attributes Extension. Such manipulation leads to denial of service.
This vulnerability is traded as CVE-2026-86433. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.VulDB Recent EntriesRead More