VYPR

npm package

express-hbs

pkg:npm/express-hbs

Vulnerabilities (1)

  • CVE-2021-32817May 14, 2021
    affected <= 2.4.0

    express-hbs is an Express handlebars template engine. express-hbs mixes pure template data with engine configuration options through the Express render API. More specifically, the layout parameter may trigger file disclosure vulnerabilities in downstream applications. This potent