Description
safer-eval is a npm package to sandbox the he evaluation of code used within the eval function. Affected versions of this package are vulnerable to Arbitrary Code Execution via generating a RangeError.
Remediation
References
https://snyk.io/vuln/SNYK-JS-SAFEREVAL-534901
https://github.com/commenthol/safer-eval/security/advisories/GHSA-v63x-xc9j-hhvq
Related Vulnerabilities
CVE-2021-21361 Vulnerability in maven package com.bmuschko:gradle-vagrant-plugin
CVE-2021-37306 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base
CVE-2023-30513 Vulnerability in maven package org.csanchez.jenkins.plugins:kubernetes
CVE-2020-6426 Vulnerability in npm package electron
CVE-2023-36479 Vulnerability in maven package org.eclipse.jetty.ee8:jetty-ee8-servlets