Vulnerabilities (CVE)

Filtered by vendor Ejs Subscribe
Filtered by product Ejs
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-1000188 1 Ejs 1 Ejs 2017-11-30 4.3 MEDIUM 6.1 MEDIUM
nodejs ejs version older than 2.5.5 is vulnerable to a Cross-site-scripting in the ejs.renderFile() resulting in code injection