Description
The package handlebars before 4.7.7 are vulnerable to Remote Code Execution (RCE) when selecting certain compiling options to compile templates coming from an untrusted source.
Remediation
References
Related Vulnerabilities
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2007-5900)
WordPress Plugin JS Support Ticket Unspecified Vulnerability (1.1.1)
WordPress Plugin Pinpoint Booking System-#1 WordPress Booking SQL Injection (1.2)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2007-1460)