CVE-2025-67898
4.5
Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Exploitability: 1.4 / Impact: 2.7
Source: MITRE (Secondary)
Description
MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.
References (1)
Source: cve@mitre.org
Timeline
No history available yet.