
CVE-2026-46439 compliance-trestle is a tooling platform for managing compliance as code. Versions prior to 3.12.2 and 4.0.3 have a Server-Side Template Injection (SSTI) vulnerabilit… https://www.cve.org/CVERecord?id=CVE-2026-46439
Post summary
The post notes that CVE‑2026‑46439 is a Server‑Side Template Injection flaw affecting compliance‑trestle versions prior to 3.12.2 and 4.0.3, but does not provide exploits, patches, or evidence of active exploitation.


