Vulnerabilities (CVE)

Filtered by vendor Handlebarsjs Subscribe
Filtered by product Handlebars
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23383 2 Handlebarsjs, Netapp 2 Handlebars, E-series Performance Analyzer 2021-12-03 7.5 HIGH 9.8 CRITICAL
The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source.
CVE-2021-23369 1 Handlebarsjs 1 Handlebars 2021-06-08 7.5 HIGH 9.8 CRITICAL
The package handlebars before 4.7.7 are vulnerable to Remote Code Execution (RCE) when selecting certain compiling options to compile templates coming from an untrusted source.