Vulnerabilities/

Code Injection in mosc

Severity:
High

Description

mosc through 1.0.0 is vulnerable to Arbitrary Code Execution. User input provided to properties argument is executed by the eval function, resulting in code execution.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
mosc
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing