Safe-Eval Project / Safe-Eval
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-26122 | All versions of the package safe-eval are vulnerable to Sandbox Bypass due to improper input sanitization. The vulnerability is derived from prototype pollutio… | CRITICAL | 10.0 | Apr 11, 2023 |
| CVE-2023-26121 | All versions of the package safe-eval are vulnerable to Prototype Pollution via the safeEval function, due to improper sanitization of its parameter content. | CRITICAL | 10.0 | Apr 11, 2023 |
| CVE-2022-25904 | Prototype Pollution | CRITICAL | 9.8 | Dec 21, 2022 |
| CVE-2020-7710 | Sandbox Escape | CRITICAL | 9.8 | Aug 21, 2020 |
| CVE-2017-16088 | The safe-eval module describes itself as a safer version of eval. By accessing the object constructors, un-sanitized user input can access the entire standard… | CRITICAL | 10.0 | Jun 7, 2018 |
Showing 1 to 5 of 5 CVEs