VYPR

npm package

access-policy

pkg:npm/access-policy

Vulnerabilities (1)

  • CVE-2020-7674CriJun 10, 2020
    affected <= 3.1.0

    access-policy through 3.1.0 is vulnerable to Arbitrary Code Execution. User input provided to the `template` function is executed by the `eval` function resulting in code execution.