Description
This affects all versions of package safe-eval. It is possible for an attacker to run an arbitrary command on the host machine.
Remediation
References
https://github.com/hacksparrow/safe-eval/issues/19
https://snyk.io/vuln/SNYK-JS-SAFEEVAL-608076
Related Vulnerabilities
CVE-2017-16010 Vulnerability in npm package i18next
CVE-2021-22137 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2022-21211 Vulnerability in npm package posix
CVE-2021-28163 Vulnerability in maven package org.eclipse.jetty:jetty-deploy
CVE-2018-1000616 Vulnerability in maven package org.onosproject:onos-cli