{"id":"GHSA-hgch-jjmr-gp7w","summary":"Sandbox Breakout / Arbitrary Code Execution in safer-eval","details":"Versions of `safer-eval` before 1.3.2 are vulnerable to Sandbox Escape leading to Remote Code Execution. A payload using constructor properties can escape the sandbox and execute arbitrary code.\n\n\n## Recommendation\n\nUpgrade to version 1.3.2.","aliases":["CVE-2019-10760","SNYK-JS-SAFEREVAL-473029"],"modified":"2026-09-10T03:48:26.739002615Z","published":"2019-10-17T18:27:30Z","database_specific":{"github_reviewed_at":"2019-10-16T15:10:50Z","nvd_published_at":"2019-10-15T15:15:00Z","cwe_ids":["CWE-94"],"severity":"CRITICAL","github_reviewed":true},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2019-10760"},{"type":"WEB","url":"https://github.com/commenthol/safer-eval/commit/1c29f6a6e304fb650c05056e217e457a0d2cc3c5"},{"type":"WEB","url":"https://snyk.io/vuln/SNYK-JS-SAFEREVAL-473029"},{"type":"WEB","url":"https://www.npmjs.com/advisories/787"}],"affected":[{"package":{"name":"safer-eval","ecosystem":"npm","purl":"pkg:npm/safer-eval"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.3.2"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2019/10/GHSA-hgch-jjmr-gp7w/GHSA-hgch-jjmr-gp7w.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H"}]}