CVE-2024-40453

squirrellyjs squirrelly v9.0.0 and fixed in v.9.0.1 was discovered to contain a code injection vulnerability via the component options.varName.
Configurations

Configuration 1 (hide)

cpe:2.3:a:squirrelly:squirrelly:9.0.0:*:*:*:*:node.js:*:*

History

No history.

Information

Published : 2024-08-21 17:15

Updated : 2024-08-23 17:35


NVD link : CVE-2024-40453

Mitre link : CVE-2024-40453

CVE.ORG link : CVE-2024-40453


JSON object : View

Products Affected

squirrelly

  • squirrelly
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')