B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-12866 - expr-eval Code Execution via toJSFunction

CVE ID :CVE-2026-12866 Published : June 23, 2026, 5 a.m. | 4 hours, 10 minutes ago Description :All versions of the package expr-eval are vulnerable to Code Execution via the toJSFunction() API. An attacker can execute arbitrary JavaScript by supplying crafted expressions that are compiled...

Original-Artikel öffnen Zurück zur Übersicht