mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 17:50:34 +00:00
733 B
733 B
CVE-2022-25921
Description
All versions of package morgan-json are vulnerable to Arbitrary Code Execution due to missing sanitization of input passed to the Function constructor.
POC
Reference
- https://security.snyk.io/vuln/SNYK-JS-MORGANJSON-2976193
- https://security.snyk.io/vuln/SNYK-JS-MORGANJSON-2976193
Github
No PoCs found on GitHub currently.