📦 Ejs

by Ejs

🔍 What is Ejs?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-29827

CRITICAL CVSS 9.8 May 4, 2023

CVE-2023-29827 is a server-side template injection vulnerability in ejs v3.1.9 that allows attackers to execute arbitrary code if they can control template files. This affects applications using ejs w...

CVE-2022-29078

CRITICAL CVSS 9.8 Apr 25, 2022

CVE-2022-29078 is a critical server-side template injection vulnerability in the EJS package for Node.js that allows remote code execution. Attackers can inject arbitrary OS commands through the outpu...