Description
An unintended require vulnerability in script-manager npm package version 0.8.6 and earlier may allow attackers to execute arbitrary code.
Remediation
References
https://hackerone.com/reports/660563
Related Vulnerabilities
CVE-2017-18197 Vulnerability in maven package org.webjars.bower:mxgraph
CVE-2022-0722 Vulnerability in npm package parse-url
CVE-2022-3171 Vulnerability in maven package com.google.protobuf:protobuf-javalite
CVE-2020-7743 Vulnerability in maven package org.webjars.bower:mathjs
CVE-2021-32643 Vulnerability in maven package org.http4s:http4s-core