Description
This affects all versions of package static-dev-server. This is because when paths from users to the root directory are joined, the assets for the path accessed are relative to that of the root directory.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7270 | This affects all versions of package static-dev-server. This is because when paths from users to the root directory are joined, the assets for the path accessed are relative to that of the root directory. |
Github GHSA |
GHSA-7fxm-c848-89q8 | static-dev-server vulnerable to path traversal |
References
History
Thu, 24 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2025-04-24T17:53:10.185Z
Reserved: 2022-02-24T00:00:00.000Z
Link: CVE-2022-25848
Updated: 2024-08-03T04:49:44.109Z
Status : Modified
Published: 2022-11-29T17:15:11.123
Modified: 2025-04-24T18:15:16.343
Link: CVE-2022-25848
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA