CVE-2022-25967

Versions of the package eta before 2.0.0 are vulnerable to Remote Code Execution (RCE) by overwriting template engine configuration variables with view options received from The Express render API. **Note:** This is exploitable only for users who are rendering templates with user-defined data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:eta.js:eta:*:*:*:*:*:node.js:*:*

History

27 Mar 2025, 21:15

Type Values Removed Values Added
References (MISC) https://github.com/eta-dev/eta/blob/9c8e4263d3a559444a3881a85c1607bf344d0b28/src/compile-string.ts%23L21 - Broken Link () https://github.com/eta-dev/eta/blob/9c8e4263d3a559444a3881a85c1607bf344d0b28/src/compile-string.ts%23L21 - Broken Link
References (MISC) https://security.snyk.io/vuln/SNYK-JS-ETA-2936803 - Third Party Advisory () https://security.snyk.io/vuln/SNYK-JS-ETA-2936803 - Third Party Advisory
References (MISC) https://github.com/eta-dev/eta/commit/5651392462ee0ff19d77c8481081a99e5b9138dd - Patch, Third Party Advisory () https://github.com/eta-dev/eta/commit/5651392462ee0ff19d77c8481081a99e5b9138dd - Patch, Third Party Advisory
References (MISC) https://github.com/eta-dev/eta/blob/9c8e4263d3a559444a3881a85c1607bf344d0b28/src/file-handlers.ts%23L182 - Broken Link () https://github.com/eta-dev/eta/blob/9c8e4263d3a559444a3881a85c1607bf344d0b28/src/file-handlers.ts%23L182 - Broken Link

07 Nov 2023, 03:44

Type Values Removed Values Added
Summary Versions of the package eta before 2.0.0 are vulnerable to Remote Code Execution (RCE) by overwriting template engine configuration variables with view options received from The Express render API. **Note:** This is exploitable only for users who are rendering templates with user-defined data. Versions of the package eta before 2.0.0 are vulnerable to Remote Code Execution (RCE) by overwriting template engine configuration variables with view options received from The Express render API. **Note:** This is exploitable only for users who are rendering templates with user-defined data.

Information

Published : 2023-01-30 05:15

Updated : 2025-03-27 21:15


NVD link : CVE-2022-25967

Mitre link : CVE-2022-25967


JSON object : View

Products Affected

eta.js

  • eta