Description
mosc through 1.0.0 is vulnerable to Arbitrary Code Execution. User input provided to `properties` argument is executed by the `eval` function, resulting in code execution.
Remediation
References
https://snyk.io/vuln/SNYK-JS-MOSC-571492
Related Vulnerabilities
CVE-2020-5284 Vulnerability in npm package next
CVE-2021-20086 Vulnerability in npm package jquery-bbq
CVE-2023-37963 Vulnerability in maven package io.jenkins.plugins:benchmark-evaluator
CVE-2021-23568 Vulnerability in npm package extend2
CVE-2022-2900 Vulnerability in maven package org.webjars.npm:parse-url