CVE-2021-21353: Injection Vulnerability
(updated )
Pug is an npm package which is a high-performance template engine.This advisory applies to multiple pug packages including pug
, pug-code-gen
.
References
Detect and mitigate CVE-2021-21353 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →