A vulnerability classified as critical was found in eslint up to 9.25.x. This issue affects the function RuleTester.run in the library eslint/lib/shared/serialization.js. Executing a manipulation can lead to stack-based buffer overflow.

The identification of this vulnerability is CVE-2025-50537. The attack needs to be done within the local network. There is no exploit available.

Upgrading the affected component is advised.