browserify/static-eval

browserify/static-eval

Releases20
Frequency6 months 2 weeks
Last Release
Stars178
evaluate statically-analyzable expressions

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

The static-eval module is intended to evaluate statically-analyzable expressions. In affected versions, untrusted user input is able to access the global function constructor, effectively allowing arbitrary code execution.