Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-ghr5-ch3p-vcr6: ejs lacks certain pollution protection

The ejs (aka Embedded JavaScript templates) package before 3.1.10 for Node.js lacks certain pollution protection.

ghsa
#nodejs#js#git#java

ejs lacks certain pollution protection

Moderate severity GitHub Reviewed Published Apr 28, 2024 to the GitHub Advisory Database • Updated May 1, 2024

ghsa: Latest News

GHSA-8495-4g3g-x7pr: aiohttp allows request smuggling due to incorrect parsing of chunk extensions