Pebble Templates Pebbletemplates Pebble Templates

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Pebbletemplates Pebble Templates.

By the Year

In 2026 there have been 0 vulnerabilities in Pebbletemplates Pebble Templates. Pebble Templates did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 0 0.00
2023 0 0.00
2022 1 9.80
2021 0 0.00
2020 0 0.00
2019 1 0.00

It may take a day or so for new Pebble Templates vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Pebbletemplates Pebble Templates Security Vulnerabilities

Pebble 3.1.5 RCE via Springbok Input Bypass
CVE-2022-37767 9.8 - Critical - September 12, 2022

Pebble Templates 3.1.5 allows attackers to bypass a protection mechanism and implement arbitrary code execution with springbok. NOTE: the vendor disputes this because input to the Pebble templating engine is intended to include arbitrary Java code, and thus either the input should not arrive from an untrusted source, or else the application using the engine should apply restrictions to the input. The engine is not responsible for validating the input.

AuthZ

Pebble Templates 3.1.2
CVE-2019-19899 - December 19, 2019

Pebble Templates 3.1.2 allows attackers to bypass a protection mechanism (intended to block access to instances of java.lang.Class) because getClass is accessible via the public static java.lang.Class java.lang.Class.forName(java.lang.Module,java.lang.String) signature.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Pebbletemplates Pebble Templates or by Pebbletemplates? Click the Watch button to subscribe.

subscribe