org.webjars.npm:vm2

Licenses: MIT

Direct Vulnerabilities

Known vulnerabilities in the org.webjars.npm:vm2 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Incomplete List of Disallowed Inputs

[0,)
  • H
Incomplete List of Disallowed Inputs

[0,)
  • C
Incomplete List of Disallowed Inputs

[0,)
  • C
Improper Control of Dynamically-Managed Code Resources

[0,)
  • C
Improper Control of Dynamically-Managed Code Resources

[0,)
  • C
Improper Control of Dynamically-Managed Code Resources

[0,)
  • C
Improper Control of Dynamically-Managed Code Resources

[0,)
  • C
Improperly Controlled Modification of Dynamically-Determined Object Attributes

[0,)
  • H
Protection Mechanism Failure

[0,)
  • C
Arbitrary Code Injection

[0,)
  • M
Improper Isolation or Compartmentalization

[0,)
  • C
Arbitrary Code Injection

[0,)
  • C
Improper Isolation or Compartmentalization

[0,)
  • H
Symlink Attack

[0,)
  • M
Improper Isolation or Compartmentalization

[0,)
  • M
Improper Isolation or Compartmentalization

[0,)
  • M
Information Exposure

[0,)
  • H
Allocation of Resources Without Limits or Throttling

[0,)
  • C
Arbitrary Code Injection

[3.9.19,)
  • C
Arbitrary Code Injection

[0,)
  • C
Uncaught Exception

[0,)
  • C
Arbitrary Code Injection

[0,)
  • C
Arbitrary Code Injection

[0,)
  • C
Arbitrary Code Injection

[0,)
  • C
Arbitrary Code Injection

[0,)
  • C
Arbitrary Code Injection

[0,)
  • C
Arbitrary Code Injection

[0,)
  • H
Improper Control of Dynamically-Managed Code Resources

[0,)
  • C
Remote Code Execution (RCE)

[0,)
  • C
Remote Code Execution (RCE)

[0,)
  • C
Sandbox Bypass

[,3.9.19)
  • M
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

[,3.9.19)
  • C
Improper Handling of Exceptional Conditions

[,3.9.19)
  • C
Sandbox Escape

[,3.9.19)
  • C
Sandbox Escape

[,3.9.19)
  • C
Sandbox Bypass

[,3.9.19)
  • C
Sandbox Bypass

[,3.9.19)
  • C
Sandbox Bypass

[,3.9.19)
  • H
Sandbox Bypass

[,3.6.11)

Package versions

2 VERSIONS IN TOTAL
versionpublisheddirect vulnerabilities
3.9.193 Jul, 2023
  • 21
    C
  • 5
    H
  • 4
    M
  • 0
    L
3.9.1113 Nov, 2022
  • 27
    C
  • 5
    H
  • 5
    M
  • 0
    L