---
id: CVE-2026-106445
title: Handlebars provides the power necessary to let users build semantic templates
summary: >-
  Handlebars provides the power necessary to let users build semantic templates.
  From 4.0.0 until 4.7.10, Handlebars lookupProperty returns
  Function.prototype.constructor before applying the prototype-access deny list
  because constructor i…
severity: critical
cvss: 9.2
cvssVector: 'CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'
cwe:
  - CWE-184
  - CWE-1289
vendor: handlebars-lang
product: handlebars.js
affected:
  - 'handlebars.js >= 4.0.0, < 4.7.10'
published: '2026-10-06'
updated: '2026-10-06'
sourceUpdated: '2026-10-06T20:17:26.293'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-106445'
references:
  - url: >-
      https://github.com/handlebars-lang/handlebars.js/commit/ceec388abe1d1aac8f6369860d5f390fa71ef4fa
    label: security-advisories@github.com
  - url: 'https://github.com/handlebars-lang/handlebars.js/pull/2185'
    label: security-advisories@github.com
  - url: 'https://github.com/handlebars-lang/handlebars.js/releases/tag/v4.7.10'
    label: security-advisories@github.com
  - url: >-
      https://github.com/handlebars-lang/handlebars.js/security/advisories/GHSA-p8wg-vrv2-v86f
    label: security-advisories@github.com
tags:
  - nvd
  - cve.org
cvssSource: cna
ingestedAt: '2026-10-06T20:16:42.486Z'
---

## Overview

Handlebars provides the power necessary to let users build semantic templates. From 4.0.0 until 4.7.10, Handlebars lookupProperty returns Function.prototype.constructor before applying the prototype-access deny list because constructor is an own property of Function.prototype. When an attacker can render a controlled template with allowProtoMethodsByDefault enabled and an accessible function in the template context, the template can traverse from that function through its prototype to Function.prototype and then obtain the Function constructor through the own-property bypass. This permits attacker-controlled JavaScript to execute with the server application's privileges. This issue is fixed in version 4.7.10.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
