QID 981883
QID 981883: Nodejs (npm) Security Update for mosc (GHSA-j665-rvj7-2jv9)
mosc through 1.0.0 is vulnerable to Arbitrary Code Execution. User input provided to `properties` argument is executed by the `eval` function, resulting in code execution.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-j665-rvj7-2jv9 for updates pertaining to this vulnerability.
Vendor References
- GHSA-j665-rvj7-2jv9 -
github.com/advisories/GHSA-j665-rvj7-2jv9
CVEs related to QID 981883
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-j665-rvj7-2jv9 | mosc |
|