yads/nodemailer-express-handlebars

Security Issue [Denial of Service]

Opened this issue · 1 comments

axago commented

Remediation : Upgrade to version 4.4.5 or later.

Screen Shot 2019-11-07 at 22 38 18

NPM Security advisory 1324
Handlebars sadly has multiple security issues at the moment.
I think we need to wait for a merge on ericf/express-handlebars#267 and than require that version of express-handlebars for this library.

Handlebars vulnerabilities:
https://www.npmjs.com/advisories/1300
https://www.npmjs.com/advisories/1316
https://www.npmjs.com/advisories/1324
https://www.npmjs.com/advisories/1325