Lucene search

K
cvelistMitreCVELIST:CVE-2021-26120
HistoryFeb 22, 2021 - 1:38 a.m.

CVE-2021-26120

2021-02-2201:38:15
mitre
www.cve.org
6
smarty
code injection
unexpected function name

AI Score

9.8

Confidence

High

EPSS

0.011

Percentile

84.8%

Smarty before 3.1.39 allows code injection via an unexpected function name after a {function name= substring.