Vulnerabilities/

MJML vulnerable to path traversal

Severity:
High

Description

MJML prior to 4.6.3 contains a path traversal vulnerability when processing the mj-include directive within an MJML document.

Recommendation

Update the mjml package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
mjml
Anything's wrong? Let us know Last updated on October 19, 2023

This issue is available in SmartScanner Professional

See Pricing