CVE-2017-1000228

Publication date

2017-11-17 03:00:00

Family

mitre

State

PUBLISHED

Description

nodejs ejs versions older than 2.5.3 is vulnerable to remote code execution due to weak input validation in ejs.renderFile() function