Vulnerabilities > Safe Eval Project

DATE CVE VULNERABILITY TITLE RISK
2023-04-11 CVE-2023-26121 Unspecified vulnerability in Safe-Eval Project Safe-Eval
All versions of the package safe-eval are vulnerable to Prototype Pollution via the safeEval function, due to improper sanitization of its parameter content.
network
low complexity
safe-eval-project
critical
10.0
2023-04-11 CVE-2023-26122 Unspecified vulnerability in Safe-Eval Project Safe-Eval
All versions of the package safe-eval are vulnerable to Sandbox Bypass due to improper input sanitization.
network
low complexity
safe-eval-project
critical
10.0
2022-12-20 CVE-2022-25904 Unspecified vulnerability in Safe-Eval Project Safe-Eval
All versions of package safe-eval are vulnerable to Prototype Pollution which allows an attacker to add or modify properties of the Object.prototype.Consolidate when using the function safeEval.
network
low complexity
safe-eval-project
critical
9.8
2020-08-21 CVE-2020-7710 Code Injection vulnerability in Safe-Eval Project Safe-Eval
This affects all versions of package safe-eval.
network
low complexity
safe-eval-project CWE-94
critical
9.8
2018-06-07 CVE-2017-16088 Unspecified vulnerability in Safe-Eval Project Safe-Eval
The safe-eval module describes itself as a safer version of eval.
network
low complexity
safe-eval-project
critical
10.0