Skip to content
Noroxi

MJML records

2 published records for vendor mjml.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
50%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20
  2. 24

Bar: total · dark part: CISA KEV.

All records

2 records
  • mjml-app versions 3.0.4 and 3.1.0-beta were discovered to contain a remote code execution (RCE) via the href attribute.

    CriticalCVSS 9.3Proof of conceptEPSS 1%

    mjml · mjml appMar 1, 2024

  • MJML prior to 4.6.3 contains a path traversal vulnerability when processing the mj-include directive within an MJML document.

    HighCVSS 7.2No exploitEPSS 3%

    mjml · mjmlJun 17, 2020