Description
An unintended require vulnerability in script-manager npm package version 0.8.6 and earlier may allow attackers to execute arbitrary code.
Remediation
References
https://hackerone.com/reports/660563
Related Vulnerabilities
CVE-2021-21162 Vulnerability in npm package electron
CVE-2022-36067 Vulnerability in npm package vm2
CVE-2020-28429 Vulnerability in npm package geojson2kml
CVE-2020-7760 Vulnerability in maven package org.webjars:codemirror
CVE-2023-36471 Vulnerability in maven package org.xwiki.commons:xwiki-commons-xml