Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
This package has been deprecated with the following message: Critical security bugs fixed in 2.5.5
Generated on May 9, 2024 via pnpm

ejs 2.3.4

Embedded JavaScript templates
Package summary
Share
11
issues
4
critical severity
vulnerability
4
3
high severity
vulnerability
2
meta
1
4
moderate severity
vulnerability
4
1
license
1
Apache-2.0
Package created
14 Feb 2011
Version published
7 Sep 2015
Maintainers
1
Total deps
1
Direct deps
0
License
Apache-2.0

Issues

11

4 critical severity issues

critical
Recommendation: Upgrade to version 3.1.7 or later
via: ejs@2.3.4
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@2.3.4
Recommendation: Upgrade to version 3.1.7 or later
via: ejs@2.3.4
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@2.3.4
Collapse
Expand

3 high severity issues

high
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@2.3.4
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@2.3.4
via: ejs@2.3.4
Collapse
Expand

4 moderate severity issues

moderate
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@2.3.4
Recommendation: Upgrade to version 3.1.10 or later
via: ejs@2.3.4
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@2.3.4
Recommendation: Upgrade to version 3.1.10 or later
via: ejs@2.3.4
Collapse
Expand

Licenses

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
1 Packages, Including:
ejs@2.3.4
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

0
All Dependencies CSV
β“˜ This is a list of ejs 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities

Visualizations