WhisperX tag archive

#CVE-2017-1000188

This page collects WhisperX intelligence signals tagged #CVE-2017-1000188. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-03-29 05:27:03 · GitHub Issues

1. CVE-2017-1000188: Legacy EJS Library ejs-0.8.8.tgz Harbors Persistent XSS Risk, Code Injection Threat

A critical security flaw, designated CVE-2017-1000188, has been identified in the legacy `ejs-0.8.8.tgz` library, exposing dependent applications to cross-site scripting (XSS) and potential code injection attacks. The vulnerability, rated with a medium severity score of 6.1, resides specifically within the `ejs.renderF...

The Lab · 2026-03-31 06:27:12 · GitHub Issues

2. CVE-2017-1000188: Legacy EJS Library ejs-0.8.8.tgz Harbors Medium-Severity XSS Vulnerability

A legacy version of the popular Embedded JavaScript templating library, EJS, remains an active security liability in modern software projects. The specific version ejs-0.8.8.tgz, detected as a dependency, contains a documented Cross-Site Scripting (XSS) vulnerability (CVE-2017-1000188) that could lead to remote code in...