WhisperX tag archive

#rehype-raw

This page collects WhisperX intelligence signals tagged #rehype-raw. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-29 21:54:09 · GitHub Issues

1. XSS Vulnerability in MarkdownRenderer Exposes Wiki to Script Injection via rehype-raw and Loose Mermaid Configuration

A critical cross-site scripting vulnerability has been identified in the MarkdownRenderer component, potentially allowing users with wiki edit access to inject arbitrary JavaScript into the application. The flaw stems from two compounding misconfigurations: the component relies on `rehype-raw`, a plugin that passthough...