Server-Side Template Injection Vulnerability in EJS by mde
CVE-2023-29827

9.8CRITICAL

Key Information:

Vendor

Ejs

Status
Vendor
CVE Published:
4 May 2023

What is CVE-2023-29827?

EJS version 3.1.9 is susceptible to server-side template injection due to its handling of untrusted inputs when the closeDelimiter parameter in configuration settings allows the potential for template manipulation. This vulnerability arises when unvalidated ejs files are encountered, enabling attackers to exploit vulnerable configurations. The vendor disputes the applicability of this vulnerability, asserting that the render function should not process untrusted content under its intended usage.

References

EPSS Score

69% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.