Vulnerabilities/

Angular Expressions - Remote Code Execution when using locals

Severity:
High

Description

An attacker can write a malicious expression that escapes the sandbox to execute arbitrary code on the system.

Recommendation

Update the angular-expressions package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
angular-expressions
Anything's wrong? Let us know Last updated on December 10, 2024

This issue is available in SmartScanner Professional

See Pricing