RSS   Vulnerabilities for 'Razorengine'   RSS

2022-03-06
 
CVE-2021-46703

NVD-CWE-noinfo
 

 
** UNSUPPORTED WHEN ASSIGNED ** In the IsolatedRazorEngine component of Antaris RazorEngine through 4.5.1-alpha001, an attacker can execute arbitrary .NET code in a sandboxed environment (if users can externally control template contents). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

 


Copyright 2024, cxsecurity.com

 

Back to Top