Skip to content

Use of insecure component safer eval #1

@wireghoul

Description

@wireghoul

Hi there,

I noticed that this project uses a component (safer eval) which suffers from a security vulnerability, you may want to check how the presence of this vulnerability impacts your users. I have written up an analysis of the bug here: http://justanotherhacker.com/archives/2016/04/29/analysis_of_the_safer_eval_code_injection_aka__the_wahckon_bug/index.html

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions