VDB
CGA-h394-5gmp-8wfr
CGA-h394-5gmp-8wfr
REJECTED
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Chainguard | gitlab-rails-ee-17.0 | 0, 0, 0 |
Exploit Intelligence
- The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source. (github-poc-repo)
- The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source. (github-poc)
- Check the conditions for exploiting CVE-2021-23383 through the handlebars library version assessment. (github-poc)
- cvl-api-suppressions.xml (github-poc)
- test_ghsa_completeness.py (github-poc)
Timeline
- Jan 28, 2026 CVE Rejected