Description
In eslint-utils before 1.4.1, the getStaticValue function can execute arbitrary code.
Remediation
References
https://github.com/mysticatea/eslint-utils/security/advisories/GHSA-3gx7-xhv7-5mx3
Related Vulnerabilities
CVE-2020-35202 Vulnerability in maven package org.igniterealtime.openfire.plugins:dbaccess
CVE-2022-36007 Vulnerability in maven package com.github.jlangch:venice
CVE-2021-21317 Vulnerability in npm package uap-core
CVE-2017-16133 Vulnerability in npm package goserv
CVE-2021-46361 Vulnerability in maven package info.magnolia:magnolia-core