Releases151
Frequency3 weeks 4 days
Last Release
Stars18.2K
MJML: the only framework that makes responsive-email easy

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
< 5.0.0-alpha.94.5 MEDIUM

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

< 4.6.37.2 HIGH6.4 MEDIUM

MJML prior to 4.6.3 contains a path traversal vulnerability when processing the mj-include directive within an MJML document.