VYPR
High severity7.2NVD Advisory· Published Jun 17, 2020· Updated Jun 17, 2026

CVE-2020-12827

CVE-2020-12827

Description

MJML prior to 4.6.3 contains a path traversal vulnerability when processing the mj-include directive within an MJML document.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
mjmlnpm
< 4.6.34.6.3

Affected products

3
  • cpe:2.3:a:mjml:mjml:*:*:*:*:*:*:*:*
    Range: <4.6.3
  • MJML/MJMLdescription
  • ghsa-coords
    Range: < 4.6.3

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.