mde / ejs

Embedded JavaScript templates -- http://ejs.co
Apache License 2.0
7.71k stars 846 forks source link

vulnerability detected in ejs 3.1.6 #650

Closed vjram555 closed 2 years ago

vjram555 commented 2 years ago

we are getting vulnerability in fortify scan sonatype issue when using ejs 3.1.6 version currently am using node 12.14.0 version Is there any recommendation node version or ejs version available to avoid this issue ?

mde commented 2 years ago

These automated scans often result in false positives. Can you point me to the specific supposed vulnerability?

python-coding-404 commented 2 years ago

gkvuyjtgjhhzdfifoskjksfmf,fsfsdf

RyanZim commented 2 years ago

Closing for lack of response. Please open a new issue if further details emerge.