Server-Side Template Injection Vulnerability in Mealie1.0.0beta3 Allows Arbitrary Code Execution

Server-Side Template Injection Vulnerability in Mealie1.0.0beta3 Allows Arbitrary Code Execution

CVE-2022-34625 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Mealie1.0.0beta3 was discovered to contain a Server-Side Template Injection vulnerability, which allows attackers to execute arbitrary code via a crafted Jinja2 template.

Learn more about our Cis Benchmark Audit For Server Software.