Server-Side Template Injection Vulnerability in EJS by mde
CVE-2023-29827
9.8CRITICAL
What is CVE-2023-29827?
EJS version 3.1.9 is susceptible to server-side template injection due to its handling of untrusted inputs when the closeDelimiter parameter in configuration settings allows the potential for template manipulation. This vulnerability arises when unvalidated ejs files are encountered, enabling attackers to exploit vulnerable configurations. The vendor disputes the applicability of this vulnerability, asserting that the render function should not process untrusted content under its intended usage.
References
EPSS Score
69% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved