Description
A path traversal vulnerability in serve npm package version 7.0.1 allows the attackers to read content of arbitrary files on the remote server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0395 | A path traversal vulnerability in serve npm package version 7.0.1 allows the attackers to read content of arbitrary files on the remote server. |
Github GHSA |
GHSA-xg75-3277-gvvj | Directory Traversal in serve |
References
| Link | Providers |
|---|---|
| https://hackerone.com/reports/358645 |
|
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-04T19:54:53.458Z
Reserved: 2019-01-04T00:00:00.000Z
Link: CVE-2019-5417
No data.
Status : Modified
Published: 2019-03-21T16:01:05.593
Modified: 2026-06-17T02:37:39.000
Link: CVE-2019-5417
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
EUVD
Github GHSA