Description Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function. Remediation References CVE-2021-23337 Related Vulnerabilities WordPress Plugin IGIT Related Posts With Thumb Image After Posts TimThumb Arbitrary File Upload (3.9.7) MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-8005) TYPO3 Improper Input Validation Vulnerability (CVE-2012-1608) WordPress Plugin Elementor Addon Elements Multiple Cross-Site Scripting Vulnerabilities (1.11.1) Squid Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2019-12525) Severity High Classification CVE-2021-23337 CWE-138 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities