CVE-2021-23447

Published
View on NVD ↗
CVSS v3
5.4
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT

Description

This affects the package teddy before 0.5.9. A type confusion vulnerability can be used to bypass input sanitization when the model content is an array (instead of a string).

🧸 Teddy is the most readable and easy to learn templating language there is!
GitHubGitHub
162