SAS® Viya® 3.5 contains a version of handlebars.js affected by CVE-2026-33937


Severity: Critical

Description: SAS Viya 3.5 contains a version of handlebars.js affected by CVE-2026-33937.

Potential Impact: This CVE might allow Remote Code Execution. See the CVE record for additional information.