dchester / jsonpath

Query and manipulate JavaScript objects with JSONPath expressions. Robust JSONPath engine for Node.js.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Security Vulnerability with static-eval@2.0.2

skvijay007 opened this issue · comments

Any chance of using the POC solution here?

JFrog Xray scan shows Arbitrary Code execution vulnerability for static-eval@2.0.2 and jsonpath@1.1.0 is flagged.