QID 980832
QID 980832: Nodejs (npm) Security Update for mustache (GHSA-w3w8-37jv-2c58)
Versions of `mustache` prior to 2.2.1 are affected by a cross-site scripting vulnerability when attributes in mustache templates are not quoted.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-w3w8-37jv-2c58 for updates pertaining to this vulnerability.
Vendor References
- GHSA-w3w8-37jv-2c58 -
github.com/advisories/GHSA-w3w8-37jv-2c58
CVEs related to QID 980832
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-w3w8-37jv-2c58 | mustache |
|