Description
In eslint-utils before 1.4.1, the getStaticValue function can execute arbitrary code.
Remediation
References
https://github.com/mysticatea/eslint-utils/security/advisories/GHSA-3gx7-xhv7-5mx3
Related Vulnerabilities
CVE-2019-12814 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2018-8039 Vulnerability in maven package org.apache.cxf:cxf-rt-transports-http
CVE-2018-1327 Vulnerability in maven package org.apache.struts:struts2-rest-plugin
CVE-2020-13957 Vulnerability in maven package org.apache.solr:solr-solrj
CVE-2020-2209 Vulnerability in maven package org.jenkins-ci.plugins:testcomplete