<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 21:18:50 +0000</lastBuildDate>
    <item>
      <title>certfr-2022-avi-278 — De multiples vulnérabilités ont été découvertes dans IBM Spectrum
discover. Certaines d'entre elles permettent à un att…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-278</link>
      <description>certfr-2022-avi-278</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-278</guid>
    </item>
    <item>
      <title>EUVD-2026-60359</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-60359</link>
      <description>EUVD-2026-60359</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-60359</guid>
    </item>
    <item>
      <title>fkie_cve-2019-20920</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-20920</link>
      <description>&lt;p&gt;Handlebars before 3.0.8 and 4.x before 4.5.3 is vulnerable to Arbitrary Code Execution. The lookup helper fails to properly validate templates, allowing attackers to submit templates that execute arbitrary JavaScript. This can be used to run arbitrary code on a server processing Handlebars templates or in a victim&amp;#39;s browser (effectively serving as XSS).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Handlebars before 3.0.8 and 4.x before 4.5.3 is vulnerable to Arbitrary Code Execution. The lookup helper fails to properly validate templates, allowing attackers to submit templates that execute arbitrary JavaScript. This can be used to run arbitrary code on a server processing Handlebars templates or in a victim&amp;#39;s browser (effectively serving as XSS).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-20920</guid>
    </item>
    <item>
      <title>GHSA-3cqr-58rm-57f8 — Arbitrary Code Execution in Handlebars</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3cqr-58rm-57f8</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: handlebars&lt;/p&gt;
&lt;p&gt;Handlebars before 3.0.8 and 4.x before 4.5.3 is vulnerable to Arbitrary Code Execution. The lookup helper fails to properly validate templates, allowing attackers to submit templates that execute arbitrary JavaScript. This can be used to run arbitrary code on a server processing Handlebars templates or in a victim&amp;#39;s browser (effectively serving as XSS).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: handlebars&lt;/p&gt;
&lt;p&gt;Handlebars before 3.0.8 and 4.x before 4.5.3 is vulnerable to Arbitrary Code Execution. The lookup helper fails to properly validate templates, allowing attackers to submit templates that execute arbitrary JavaScript. This can be used to run arbitrary code on a server processing Handlebars templates or in a victim&amp;#39;s browser (effectively serving as XSS).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3cqr-58rm-57f8</guid>
    </item>
    <item>
      <title>gsd-2019-20920</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-20920</link>
      <description>gsd-2019-20920</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-20920</guid>
    </item>
    <item>
      <title>RHSA-2020:5179 — Red Hat Security Advisory: Red Hat Virtualization security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:5179</link>
      <description>&lt;p&gt;nodejs-handlebars: lookup helper fails to properly validate templates allowing for arbitrary JavaScript execution nodejs-handlebars: an endless loop while processing specially-crafted templates leads to DoS nodejs-lodash: prototype pollution in zipObjectDeep function&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;nodejs-handlebars: lookup helper fails to properly validate templates allowing for arbitrary JavaScript execution nodejs-handlebars: an endless loop while processing specially-crafted templates leads to DoS nodejs-lodash: prototype pollution in zipObjectDeep function&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:5179</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2019-20920</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-20920</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: node-handlebars&lt;/p&gt;
&lt;p&gt;Handlebars before 3.0.8 and 4.x before 4.5.3 is vulnerable to Arbitrary Code Execution. The lookup helper fails to properly validate templates, allowing attackers to submit templates that execute arbitrary JavaScript. This can be used to run arbitrary code on a server processing Handlebars templates or in a victim&amp;#39;s browser (effectively serving as XSS).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: node-handlebars&lt;/p&gt;
&lt;p&gt;Handlebars before 3.0.8 and 4.x before 4.5.3 is vulnerable to Arbitrary Code Execution. The lookup helper fails to properly validate templates, allowing attackers to submit templates that execute arbitrary JavaScript. This can be used to run arbitrary code on a server processing Handlebars templates or in a victim&amp;#39;s browser (effectively serving as XSS).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-20920</guid>
    </item>
  </channel>
</rss>
