Описание
mde ejs vulnerable to XSS
nodejs ejs version older than 2.5.5 is vulnerable to a Cross-site-scripting in the ejs.renderFile() resulting in code injection
Пакеты
Наименование
ejs
npm
Затронутые версииВерсия исправления
< 2.5.5
2.5.5
Связанные уязвимости
CVSS3: 6.1
ubuntu
почти 9 лет назад
nodejs ejs version older than 2.5.5 is vulnerable to a Cross-site-scripting in the ejs.renderFile() resulting in code injection
CVSS3: 6.1
redhat
больше 9 лет назад
nodejs ejs version older than 2.5.5 is vulnerable to a Cross-site-scripting in the ejs.renderFile() resulting in code injection
CVSS3: 6.1
nvd
почти 9 лет назад
nodejs ejs version older than 2.5.5 is vulnerable to a Cross-site-scripting in the ejs.renderFile() resulting in code injection
CVSS3: 6.1
debian
почти 9 лет назад
nodejs ejs version older than 2.5.5 is vulnerable to a Cross-site-scri ...