It was discovered that kramdown did not restrict Rouge formatters to the correct namespace. An attacker could use this issue to cause kramdown to execute arbitrary code.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1.17.0-4ubuntu0.2", "binary_name": "kramdown" }, { "binary_version": "1.17.0-4ubuntu0.2", "binary_name": "ruby-kramdown" } ] }