mjmlio/mjml
Releases151
Frequency3 weeks 4 days
Last Release
Stars18.2K
MJML: the only framework that makes responsive-email easy
CVE History
| CVE | Affected | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|---|
| < 5.0.0-alpha.9 | 4.5 MEDIUM | — | ||
MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827. | ||||
| < 4.6.3 | 7.2 HIGH | 6.4 MEDIUM | ||
MJML prior to 4.6.3 contains a path traversal vulnerability when processing the mj-include directive within an MJML document. | ||||