VYPR

npm package

module-from-string

pkg:npm/module-from-string

Vulnerabilities (1)

  • CVE-2024-57072HigFeb 5, 2025
    affected <= 3.3.1

    A prototype pollution in the lib.requireFromString function of module-from-string v3.3.1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.