QID 983777
QID 983777: Nodejs (npm) Security Update for ejs (GHSA-6x77-rpqf-j6mw)
nodejs ejs version older than 2.5.5 is vulnerable to a denial-of-service due to weak input validation in the ejs.renderFile()
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-6x77-rpqf-j6mw for updates pertaining to this vulnerability.
Vendor References
- GHSA-6x77-rpqf-j6mw -
github.com/advisories/GHSA-6x77-rpqf-j6mw
CVEs related to QID 983777
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-6x77-rpqf-j6mw | ejs |
|