Huge News!Announcing our $40M Series B led by Abstract Ventures.Learn More
Socket
Socket
Sign inDemoInstall

static-eval

Package Overview
Dependencies
Maintainers
2
Versions
19
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

static-eval - npm Package Versions

2

2.1.1

Diff

Changelog

Source

2.1.1

  • Update escodegen. @FabianWarnecke in #43

    escodegen doesn't officially support all the Node.js versions that static-eval supports, but so far it still works on them. This has been the case for both v1.x and v2.1.0 of escodegen, so the upgrade doesn't change that situation.

goto-bus-stop
published 2.1.0 •

Changelog

Source

2.1.0

  • Add allowAccessToMethodsOnFunctions option to restore 1.x behaviour so that cwise can upgrade. (@archmoj in #31)

    Do not use this option if you are not sure that you need it, as it had previously been removed for security reasons. There is a known exploit to execute arbitrary code. Only use it on trusted inputs, like the developer's JS files in a build system.

goto-bus-stop
published 2.0.5 •

Changelog

Source

2.0.5

  • Fix function bodies being invoked during declaration. (@RoboPhred in #30)
goto-bus-stop
published 2.0.4 •

Changelog

Source

2.0.4

  • Short-circuit evaluation in && and || expressions. (@RoboPhred in #28)
  • Start tracking changes.
goto-bus-stop
published 2.0.3 •

goto-bus-stop
published 2.0.2 •

substack
published 2.0.1 •

substack
published 2.0.0 •

substack
published 1.1.1 •

substack
published 1.1.0 •

2
SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap
  • Changelog

Packages

npm

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc