Filtered by vendor Harpjs Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-5437 1 Harpjs 1 Harp 2024-08-04 N/A
Information exposure through the directory listing in npm's harp module allows to access files that are supposed to be ignored according to the harp server rules.Vulnerable versions are <= 0.29.0 and no fix was applied to our knowledge.
CVE-2019-5438 1 Harpjs 1 Harp 2024-08-04 5.3 Medium
Path traversal using symlink in npm harp module versions <= 0.29.0.