Vulnerabilities in serialize-to-js