by niel on 10/21/24, 12:25 PM with 1 comments
by niel on 10/21/24, 12:25 PM
Recent versions allow trivial RCE. [1]
[0] 800+ direct dependants https://www.npmjs.com/package/jsonpath-plus?activeTab=depend... [1] https://github.com/JSONPath-Plus/JSONPath/issues/226