Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-23358

The package underscore from 1.13.0-0 and before 1.13.0-2, from 1.3.2 and before 1.12.1 are vulnerable to Arbitrary Code Injection via the template function, particularly when a variable property is passed as an argument as it is not sanitized.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 75.4%
CVSS Severity
CVSS v3 Score 3.3
CVSS v2 Score 6.5
References
Products affected by CVE-2021-23358


Contact Us

Shodan ® - All rights reserved