cve/2015/CVE-2015-8857.md
2024-05-26 14:27:05 +02:00

764 B

CVE-2015-8857

Description

The uglify-js package before 2.4.24 for Node.js does not properly account for non-boolean values when rewriting boolean expressions, which might allow attackers to bypass security mechanisms or possibly have unspecified other impact by leveraging improperly rewritten Javascript.

POC

Reference

No PoCs from references.

Github