Huge News!Announcing our $40M Series B led by Abstract Ventures.Learn More
Socket
Sign inDemoInstall
Socket

json-logic-js

Package Overview
Dependencies
Maintainers
1
Versions
19
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

json-logic-js - npm Package Versions

2

2.0.5

Diff

jwadhams
published 2.0.4 •

jwadhams
published 2.0.2 •

Changelog

Source

2.0.2

Thanks @panzi for rebuilding the test system and removing Gulp as a dev dependency.

jwadhams
published 2.0.1 •

Changelog

Source

2.0.1

The operations object could be exploited to run arbitrary code. Resolves SNYK-JS-JSONLOGICJS-674308, thanks Arel Cordero for reporting.

jwadhams
published 2.0.0 •

Changelog

Source

2.0.0

Major version bump because we're removing the method operation. The NPM advisory 1542 shows that an attacker can supply a JsonLogic rule that will execute arbitrary code in the client of anyone who executes that rule with any data.

jwadhams
published 1.2.3 •

Changelog

Source

1.2.3

Cleaned up JsonLogic's behavior when the data parameter is not an object, especially when it's falsy. Resolves PRs 88 and 89, but more importantly makes the var operator more resilient.

jwadhams
published 1.2.2 •

jwadhams
published 1.2.1 •

jwadhams
published 1.2.0 •

jwadhams
published 1.1.3-sets •

2
SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap
  • Changelog

Packages

npm

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc