Логотип exploitDog
bind:CVE-2021-32819
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-32819

Количество 2

Количество 2

nvd логотип

CVE-2021-32819

больше 4 лет назад

Squirrelly is a template engine implemented in JavaScript that works out of the box with ExpressJS. Squirrelly mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration options remote code execution may be triggered in downstream applications. This issue is fixed in version 9.0.0. For complete details refer to the referenced GHSL-2021-023.

CVSS3: 8
EPSS: Высокий
github логотип

GHSA-q8j6-pwqx-pm96

больше 4 лет назад

Insecure template handling in Squirrelly

CVSS3: 8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-32819

Squirrelly is a template engine implemented in JavaScript that works out of the box with ExpressJS. Squirrelly mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration options remote code execution may be triggered in downstream applications. This issue is fixed in version 9.0.0. For complete details refer to the referenced GHSL-2021-023.

CVSS3: 8
88%
Высокий
больше 4 лет назад
github логотип
GHSA-q8j6-pwqx-pm96

Insecure template handling in Squirrelly

CVSS3: 8
88%
Высокий
больше 4 лет назад

Уязвимостей на страницу