Vulnerabilities/

Code injection in mock2easy

Severity:
High

Description

This affects all versions up to and including version 0.0.24 of package mock2easy. a malicious user could inject commands through the _data variable:

Affected Area

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
mock2easy
Anything's wrong? Let us know Last updated on September 08, 2023