ZeroHour

CVE-2021-23383

PoC ×4
CVSS 3.1
9.8 critical
EPSS
5%p91
Published
()
Modified
Description

The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source.

Vendors
handlebarsjsnetapp
Products
handlebars, e-series performance analyzer
Weakness
CWE-1321
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.