Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40123
HistoryApr 12, 2023 - 2:21 p.m.

Prototype Pollution

2023-04-1214:21:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
safeeval
prototype pollution
sandbox escaping
stack trace
software

EPSS

0.002

Percentile

53.7%

safe-eval is vulnerable to Prototype Pollution. The vulnerability exists in safeEval in index.js due to sandbox escaping which allows an attacker to access the host error objects during the generation of a stack trace.

EPSS

0.002

Percentile

53.7%

Related for VERACODE:40123