Description
safer-eval is a npm package to sandbox the he evaluation of code used within the eval function. Affected versions of this package are vulnerable to Arbitrary Code Execution via generating a RangeError.
Remediation
References
https://github.com/commenthol/safer-eval/security/advisories/GHSA-v63x-xc9j-hhvq
https://snyk.io/vuln/SNYK-JS-SAFEREVAL-534901
Related Vulnerabilities
CVE-2020-2189 Vulnerability in maven package org.jenkins-ci.plugins:scm-filter-jervis
CVE-2018-1339 Vulnerability in maven package org.apache.tika:tika-parsers
CVE-2019-1003028 Vulnerability in maven package org.jenkins-ci.plugins:jms-messaging
CVE-2018-11093 Vulnerability in npm package @ckeditor/ckeditor5-link
CVE-2022-31175 Vulnerability in npm package @ckeditor/ckeditor5-html-embed