Vulnerabilities/

Insecure template handling in haml-coffee

Severity:
High

Description

haml-coffee is a JavaScript templating solution. haml-coffee mixes pure template data with engine configuration options through the Express render API. More specifically, haml-coffee supports overriding a series of HTML helper functions through its configuration options.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
haml-coffee
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing