Description
mustache package before 2.2.1 for Node.js allows remote attackers to conduct cross-site scripting (XSS) attacks by leveraging a template with an attribute that is not quoted.
Remediation
References
Related Vulnerabilities
PHP Safedir restriction bypass vulnerabilities
ReviveAdserver Other Vulnerability (CVE-2016-9471)
WordPress 4.4.x Arbitrary File Deletion Vulnerability (4.4 - 4.4.15)
Oracle HTTP Server NULL Pointer Dereference Vulnerability (CVE-2020-1967)
WordPress Plugin Photo Gallery, Images, Slider in Rbs Image Gallery Security Bypass (2.0.15)