CVE-2021-23369
12.04.2021, 14:15
The package handlebars before 4.7.7 are vulnerable to Remote Code Execution (RCE) when selecting certain compiling options to compile templates coming from an untrusted source.Enginsight
| Vendor | Product | Version |
|---|---|---|
| handlebarsjs | handlebars | 𝑥 < 4.7.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libjs-handlebars |
| ||||||||||||||||||||||||
| node-handlebars |
|
References