DirectorySecurity Advisories
Sign In
Security Advisories

CGA-rp6g-6jr6-7r2f

Published

Last updated

https://images.chainguard.dev/security/CGA-rp6g-6jr6-7r2f
Package

gitlab-rails-ee-fips-17.3

Latest Update
Not affected
Aliases
  • CVE-2021-23383
  • GHSA-765h-qjxv-5f44

Severity

9.8

Critical

CVSS V3

Summary

Prototype Pollution in handlebars

Description

The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images