CVE-2020-12827
MJML prior to 4.6.3 contains a path traversal vulnerability when processing the mj-include directive within an MJML document.
- Affected products
- Mjml
- Mjml
- < 4.6.3
- Fix
- Available
- CVSS 3.1
- 7.2 HIGH
- EPSS
- 2.7% (84th percentile)
- Weakness
- CWE-22
- NVD status
- Modified
- Published
- 2020-06-17
CVE-2020-12827 at NVD
3 known exploits for CVE-2020-12827
Proof-of-concept code and exploit modules indexed by Sploitus