CVE-2026-33938 | Handlebars up to 4.7.8 compile code injection (GHSA-3mfm-83xf-c92r)
A vulnerability has been found in Handlebars up to 4.7.8 and classified as critical. Affected by this vulnerability is the function compile. The manipulation leads to code injection.
This vulnerability is referenced as CVE-2026-33938. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.