It was found that nodejs-ejs < 2.5.5 is vulnerable to DoS issue by letting the attacker under certain conditions control and override the localNames option causing it to crash. Upstream patch: https://github.com/mde/ejs/commit/49264e0037e313a0a3e033450b5c184112516d8f External Reference: https://snyk.io/vuln/npm:ejs:20161130-1
Created nodejs-ejs tracking bugs for this issue: Affects: fedora-all [bug 1404189] Affects: epel-all [bug 1404190]