Jakob Linskeseder
6 exploits
Active since Mar 2026
Handlebars.js has JavaScript Injection via AST Type Confusion
CVSS 9.8
Handlebars.js has Prototype Pollution Leading to XSS through Partial Template Injection
CVSS 4.7
Handlebars.js has JavaScript Injection via AST Type Confusion by tampering @partial-block
CVSS 8.1
Handlebars.js has Denial of Service via Malformed Decorator Syntax in Template Compilation
CVSS 7.5
Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial
CVSS 8.1
Handlebars.js has JavaScript Injection in CLI Precompiler via Unescaped Names and Options
CVSS 8.2