Vulnerabilities/

Sandbox Bypass Leading to Arbitrary Code Execution in constantinople

Severity:
High

Description

Versions of constantinople prior to 3.1.1 are vulnerable to a sandbox bypass which can lead to arbitrary code execution.

Recommendation

Update the constantinople package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
constantinople
Anything's wrong? Let us know Last updated on January 09, 2023