Description
In eslint-utils before 1.4.1, the getStaticValue function can execute arbitrary code.
Remediation
References
https://github.com/mysticatea/eslint-utils/security/advisories/GHSA-3gx7-xhv7-5mx3
Related Vulnerabilities
CVE-2019-9212 Vulnerability in maven package com.alipay.sofa:hessian
CVE-2018-16487 Vulnerability in maven package org.webjars.bower:lodash
CVE-2021-27191 Vulnerability in npm package get-ip-range
CVE-2022-21169 Vulnerability in npm package express-xss-sanitizer
CVE-2018-11775 Vulnerability in maven package org.apache.activemq:activemq-core