VYPR

npm package

ses

pkg:npm/ses

Vulnerabilities (2)

  • CVE-2025-32792HigApr 18, 2025
    affected < 1.12.0fixed 1.12.0

    SES safely executes third-party JavaScript 'strict' mode programs in compartments that have no excess authority in their global scope. Prior to version 1.12.0, web pages and web extensions using `ses` and the Compartment API to evaluate third-party code in an isolated execution e

  • CVE-2023-39532Aug 8, 2023
    affected >= 0.13.0, < 0.13.5fixed 0.13.5

    SES is a JavaScript environment that allows safe execution of arbitrary programs in Compartments. In version 0.18.0 prior to 0.18.7, 0.17.0 prior to 0.17.1, 0.16.0 prior to 0.16.1, 0.15.0 prior to 0.15.24, 0.14.0 prior to 0.14.5, an 0.13.0 prior to 0.13.5, there is a hole in the