Description
In eslint-utils before 1.4.1, the getStaticValue function can execute arbitrary code.
Remediation
References
https://github.com/mysticatea/eslint-utils/security/advisories/GHSA-3gx7-xhv7-5mx3
Related Vulnerabilities
CVE-2017-14063 Vulnerability in maven package org.asynchttpclient:async-http-client-project
CVE-2023-26920 Vulnerability in npm package fast-xml-parser
CVE-2020-26302 Vulnerability in npm package is_js
CVE-2020-7765 Vulnerability in npm package @firebase/util
CVE-2018-5673 Vulnerability in maven package org.dojotoolkit:dojo