Lucene search

K

Hbs Security Vulnerabilities

cve
cve

CVE-2021-32822

The npm hbs package is an Express view engine wrapper for Handlebars. Depending on usage, users of hbs may be vulnerable to a file disclosure vulnerability. There is currently no patch for this vulnerability. hbs mixes pure template data with engine configuration options through the Express render....

5.3CVSS

5.3AI Score

0.002EPSS

2021-08-16 07:15 PM
41
4
cve
cve

CVE-2021-28809

An improper access control vulnerability has been reported to affect certain legacy versions of HBS 3. If exploited, this vulnerability allows attackers to compromise the security of the operating system.QNAP have already fixed this vulnerability in the following versions of HBS 3: QTS 4.3.6: HBS.....

9.8CVSS

9.3AI Score

0.006EPSS

2021-07-08 08:15 AM
134
2
cve
cve

CVE-2021-32817

express-hbs is an Express handlebars template engine. express-hbs mixes pure template data with engine configuration options through the Express render API. More specifically, the layout parameter may trigger file disclosure vulnerabilities in downstream applications. This potential vulnerability.....

6.8CVSS

6.6AI Score

0.002EPSS

2021-05-14 07:15 PM
29
3
cve
cve

CVE-2021-28799

An improper authorization vulnerability has been reported to affect QNAP NAS running HBS 3 (Hybrid Backup Sync. ) If exploited, the vulnerability allows remote attackers to log in to a device. This issue affects: QNAP Systems Inc. HBS 3 versions prior to v16.0.0415 on QTS 4.5.2; versions prior to.....

10CVSS

9.3AI Score

0.88EPSS

2021-05-13 03:15 AM
955
In Wild
9