Handlebars.js Project Handlebars.js 4.2.1 - for Node.js

CPE Details

Handlebars.js Project Handlebars.js 4.2.1 - for Node.js
4.2.1
2022-06-03
16h48 +00:00
2022-06-21
23h38 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:handlebars.js_project:handlebars.js:4.2.1:-:*:*:*:node.js:*:*

Informations

Vendor

handlebars.js_project

Product

handlebars.js

Version

4.2.1

Update

-

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-19919 2019-12-20 21h50 +00:00 Versions of handlebars prior to 4.3.0 are vulnerable to Prototype Pollution leading to Remote Code Execution. Templates may alter an Object's __proto__ and __defineGetter__ properties, which may allow an attacker to execute arbitrary code through crafted payloads.
9.8
Critical