Description
An unintended require vulnerability in script-manager npm package version 0.8.6 and earlier may allow attackers to execute arbitrary code.
Remediation
References
https://hackerone.com/reports/660563
Related Vulnerabilities
CVE-2023-47321 Vulnerability in maven package org.silverpeas.core:silverpeas-core-web
CVE-2018-3737 Vulnerability in maven package org.webjars.npm:sshpk
CVE-2022-28367 Vulnerability in maven package org.owasp:antisamy
CVE-2022-34114 Vulnerability in maven package io.dataease:dataease-plugin-common
CVE-2009-4611 Vulnerability in maven package org.mortbay.jetty:jetty