{"id":"GHSA-4wv4-mgfq-598v","aliases":[],"url":"https://o3.security/vulnerability/GHSA-4wv4-mgfq-598v","summary":"Code injection in nobelprizeparser","details":"Code injection through use of eval.","published":"2021-03-12T23:00:19Z","modified":"2021-03-12T19:13:27Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"npm","name":"nobelprizeparser","fixedVersion":"1.0.2"}],"fix":{"url":"https://github.com/AnneTheDev/nobelprize/commit/00639d375b0efd097bc1eca18d9dc021691b9286","label":"AnneTheDev/nobelprize@00639d3"},"references":[{"type":"WEB","url":"https://github.com/AnneTheDev/nobelprize/security/advisories/GHSA-4wv4-mgfq-598v"},{"type":"WEB","url":"https://github.com/AnneTheDev/nobelprize/commit/00639d375b0efd097bc1eca18d9dc021691b9286"},{"type":"WEB","url":"https://www.npmjs.com/package/nobelprizeparser"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2021-03-12T19:13:27Z"}}