Lucene search

K
cvelistMitreCVELIST:CVE-2018-13818
HistoryJul 10, 2018 - 2:00 p.m.

CVE-2018-13818

2018-07-1014:00:00
mitre
www.cve.org
7

AI Score

9.7

Confidence

High

EPSS

0.06

Percentile

93.5%

Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the vendor points out that Twig itself is not a web application and states that it is the responsibility of web applications using Twig to properly wrap input to it

AI Score

9.7

Confidence

High

EPSS

0.06

Percentile

93.5%

Related for CVELIST:CVE-2018-13818