-
Notifications
You must be signed in to change notification settings - Fork 10
Open
Labels
enhancementNew feature or requestNew feature or request
Description
Executing code with the Nodejs VM module has many known security vulnerabilities, and we need to address them before any major release.
This tool might help: https://github.com/patriksimek/vm2
See also:
nodejs/node#40718
https://pwnisher.gitlab.io/nodejs/sandbox/2019/02/21/sandboxing-nodejs-is-hard.html
https://github.com/laverdet/isolated-vm
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or request