CVEFinder.io

CVE-2021-23337

⚠️ high
🔍 Scan for this CVE
Summary

Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function.

CVSS Score
7.2
High
EPSS Score
0.7
Exploit Probability
Published Date
2021-02-15
First Seen: 2026-01-05
📊 Relative Risk Intelligence

This CVE is Moderate Risk - more severe than 54.7% of all 342,933 vulnerabilities in our database.

#155,440
Above average severity
Severity Percentile
Last Modified 2024-11-21
Source NVD 🔗
CVSS Vector 3.1 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE IDs (Weakness Types)

📦 Affected Products 45

🔗 References 13

🔗 Related CVEs 6

CVE ID Severity CVSS EPSS Summary Published
CVE-2026-47015 ⚠️ high 7.1 0.2 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). ... 2026-07-21
CVE-2026-47017 ⚠️ high 8.7 0.2 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Process Scheduler). Sup... 2026-07-21
CVE-2026-47024 🔶 medium 5.4 0.2 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Panel Processor). The ... 2026-07-21
CVE-2026-47026 ⚠️ high 7.4 0.3 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: OpenSearch Dashboards). ... 2026-07-21
CVE-2026-47048 🔶 medium 5.4 0.2 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Security). Supported ve... 2026-07-21
CVE-2026-47049 🔶 medium 4.9 0.4 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). S... 2026-07-21
These CVEs affect the same products