-
CVSS Score
-| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| @blakeembrey/template | npm | < 1.2.0 | 1.2.0 |
The vulnerability stems from unsanitized use of the 'displayName' parameter in two key functions:
function ${displayName}(...)), allowing code injection.A Semantic Attack on Google Gemini - Read the Latest Research