Description
nodejs ejs versions older than 2.5.3 is vulnerable to remote code execution due to weak input validation in ejs.renderFile() function
Remediation
References
https://snyk.io/vuln/npm:ejs:20161128
http://www.securityfocus.com/bid/101897