Vulnerabilities/

Unsafe object property setter in mathjs

Severity:
High

Description

This security vulnerability allowed executing arbitrary JavaScript via the expression parser of mathjs. You can be affected when you have an application where users can evaluate arbitrary expressions using the mathjs expression parser.

Recommendation

Update the mathjs package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
mathjs
Anything's wrong? Let us know Last updated on April 28, 2026