Vulnerability Intelligence and Management by Cybersecurity Help s.r.o.



Eval Injection

The software receives input from an upstream component, but it does not neutralize or incorrectly neutralizes code syntax before using the input in a dynamic evaluation call (e.g. "eval").