All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-45618
CRITICALpublished 2026-08-11 20:17 UTC · 1 day ago
10.0
CVSS / 10
// description
LiquidJS is a Shopify/GitHub Pages compatible template engine. Prior to version 10.26.0, it is possible to execute arbitrary code with crafted templates. Version 10.26.0 patches the issue.
// weaknesses (CWE)
- CWE-94