GMS-2020-728: Denial of Service in handlebars
(updated )
Affected versions of handlebars
are vulnerable to Denial of Service. The package’s parser may be forced into an endless loop while processing specially-crafted templates. This may allow attackers to exhaust system resources leading to Denial of Service.
Recommendation
Upgrade to version 4.4.5 or later.
References
Detect and mitigate GMS-2020-728 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →