mirror of
https://github.com/discourse/discourse.git
synced 2025-02-08 04:18:23 +00:00
WS-2019-0064: Versions of handlebars prior to 4.0.14 are vulnerable to Prototype Pollution. Templates may alter an Objects prototype, thus allowing an attacker to execute arbitrary code on the server.