Description
The ejs (aka Embedded JavaScript templates) package before 3.1.10 for Node.js lacks certain pollution protection.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-ghr5-ch3p-vcr6 | ejs lacks certain pollution protection |
References
History
Thu, 26 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T02:42:59.934Z
Reserved: 2024-04-28T00:00:00.000Z
Link: CVE-2024-33883
Updated: 2024-08-02T02:42:59.934Z
Status : Deferred
Published: 2024-04-28T16:15:23.233
Modified: 2026-06-17T07:32:30.380
Link: CVE-2024-33883
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-693
Protection Mechanism Failure
Github GHSA