Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
Safe Eval
CRITICAL 10.0
CVE-2023-26121
All versions of the package safe-eval are vulnerable to Prototype Pollution via the safeEval function, due to improper sanitization of its parameter …
Fix: after 0.4.1
Fix from $2,300
2023-04-11
Safe Eval
CRITICAL 10.0
CVE-2023-26122
All versions of the package safe-eval are vulnerable to Sandbox Bypass due to improper input sanitization. The vulnerability is derived from prototyp…
Fix: after 0.4.1
Fix from $2,300
2023-04-11
Safe Eval
CRITICAL 9.8
CVE-2022-25904
All versions of package safe-eval are vulnerable to Prototype Pollution which allows an attacker to add or modify properties of the Object.prototype.…
Fix: after 0.4.1
Fix from $2,300
2022-12-20
Safe Eval
CRITICAL 9.8
CVE-2020-7710
This affects all versions of package safe-eval. It is possible for an attacker to run an arbitrary command on the host machine.
No fix yet
Fix from $2,300
2020-08-21
Safe Eval
CRITICAL 10.0
CVE-2017-16088
The safe-eval module describes itself as a safer version of eval. By accessing the object constructors, un-sanitized user input can access the entire…
Mitigation only
Fix from $2,300
2018-06-07