<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T13:58:45.159071+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-04669</id>
    <title>bdu:2021-04669</title>
    <updated>2026-10-04T13:58:45.331260+00:00</updated>
    <content>bdu:2021-04669</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-04669"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-1119</id>
    <title>certfr-2022-avi-1119 — De multiples vulnérabilités ont été découvertes dans Tenable Nessus
Network Monitor. Elles permettent à un attaquant de…</title>
    <updated>2026-10-04T13:58:45.331297+00:00</updated>
    <content>certfr-2022-avi-1119</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-1119"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-169535</id>
    <title>EUVD-2026-169535</title>
    <updated>2026-10-04T13:58:45.331317+00:00</updated>
    <content>EUVD-2026-169535</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-169535"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-23383</id>
    <title>fkie_cve-2021-23383</title>
    <updated>2026-10-04T13:58:45.331330+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-23383"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-765h-qjxv-5f44</id>
    <title>GHSA-765h-qjxv-5f44 — Prototype Pollution in handlebars</title>
    <updated>2026-10-04T13:58:45.331356+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: handlebars</p>
<p>The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-765h-qjxv-5f44"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-23383</id>
    <title>gsd-2021-23383</title>
    <updated>2026-10-04T13:58:45.331379+00:00</updated>
    <content>gsd-2021-23383</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-23383"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1196</id>
    <title>OESA-2021-1196 — nodejs-handlebars security update</title>
    <updated>2026-10-04T13:58:45.331391+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: nodejs-handlebars</p>
<p>Handlebars.js is an extension to the Mustache templating language created by Chris Wanstrath. Handlebars.js and Mustache are both logicless templating languages that keep the view and the code separated like we all know they should be.

Security Fix(es):

The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source.(CVE-2021-23383)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1196"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:2500</id>
    <title>RHSA-2021:2500 — Red Hat Security Advisory: Red Hat OpenShift Enterprise security and bug fix update</title>
    <updated>2026-10-04T13:58:45.331413+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>nodejs-handlebars: lookup helper fails to properly validate templates allowing for arbitrary JavaScript execution nodejs-handlebars: an endless loop while processing specially-crafted templates leads to DoS nodejs-handlebars: Remote code execution when compiling untrusted compile templates with strict:true option nodejs-handlebars: Remote code execution when compiling untrusted compile templates with compat:true option</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:2500"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-23383</id>
    <title>UBUNTU-CVE-2021-23383</title>
    <updated>2026-10-04T13:58:45.331436+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:18.04:LTS: node-handlebars, Ubuntu:20.04:LTS: node-handlebars, Ubuntu:22.04:LTS: node-handlebars, Ubuntu:24.04:LTS: node-handlebars, Ubuntu:25.10: node-handlebars, Ubuntu:26.04:LTS: node-handlebars</p>
<p>The package handlebars before 4.7.7 are vulnerable to Prototype Pollution when selecting certain compiling options to compile templates coming from an untrusted source.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-23383"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1646</id>
    <title>WID-SEC-W-2022-1646 — Red Hat OpenShift: Mehrere Schwachstellen ermöglichen Codeausführung</title>
    <updated>2026-10-04T13:58:45.331465+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat OpenShift ausnutzen, um beliebigen Programmcode auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1646"/>
  </entry>
</feed>
