All versions of package morgan-json are vulnerable to Arbitrary Code Execution due to missing sanitization of input passed to the Function constructor.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Morgan-json |
Morgan-json_project |
* |
* |
References