This affects all versions of package curly-bracket-parser. When used as a template library, it does not properly sanitize the user input.
References
Link | Resource |
---|---|
https://github.com/magynhard/curly-bracket-parser/blob/master/src/curly-bracket-parser/curly-bracket-parser.js%23L31 | Broken Link |
https://snyk.io/vuln/SNYK-JS-CURLYBRACKETPARSER-1297106 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: snyk
Published: 2021-07-28T00:00:00
Updated: 2021-07-28T16:05:17
Reserved: 2021-01-08T00:00:00
Link: CVE-2021-23416
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-07-28T16:15:08.030
Modified: 2021-08-05T12:25:55.457
Link: CVE-2021-23416
JSON object: View
Redhat Information
No data.
CWE