AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-20T15:18:04.577Z and has not been modified since then. The NVD entry is currently being reviewed. Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.springmvc.SpringTemplateLoader resolves attacker-influenced Spring MVC view na [truncated]
CVE-2026-55760 is a high-severity vulnerability in Handlebars.java, a Java library for logic-less and semantic Mustache templates. Prior to version 4.5.2, applications using FileTemplateLoader or ClassPathTemplateLoader and passing user-controlled input to Handlebars.compile() are vulnerable to path traversal attacks. This could allow attackers to read arbitrary files through template names derived from U [truncated]