Loading
Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rational Application Developer and other products, allows remote attackers to execute arbitrary code via a crafted file.
Cite this page
CVE-2014-7192. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2014-7192
Use CWE-94, Joyent vendor hub and Node.Js product page to widen CVE-2014-7192 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2014-6394 for nearby disclosures in the same product family.