CVE-2021-23447
Published
CVSS v3
5.4
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT
Description
This affects the package teddy before 0.5.9. A type confusion vulnerability can be used to bypass input sanitization when the model content is an array (instead of a string).
🧸 Teddy is the most readable and easy to learn templating language there is!