Embedded JavaScript templates vulnerable to pollution
CVE-2024-33883
Currently unrated
What is CVE-2024-33883?
The ejs (aka Embedded JavaScript templates) package before 3.1.10 for Node.js lacks certain pollution protection.
The ejs (aka Embedded JavaScript templates) package before 3.1.10 for Node.js lacks certain pollution protection.