Description
All versions of package easy-static-server are vulnerable to Directory Traversal due to missing input sanitization and sandboxes being employed to the req.url user input that is passed to the server code.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7760 | All versions of package easy-static-server are vulnerable to Directory Traversal due to missing input sanitization and sandboxes being employed to the req.url user input that is passed to the server code. |
Github GHSA |
GHSA-wcwm-c3mr-pxcr | easy-static-server vulnerable to Directory Traversal |
References
History
Wed, 16 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2025-04-16T18:07:59.150Z
Reserved: 2022-02-24T00:00:00.000Z
Link: CVE-2022-25931
Updated: 2024-08-03T04:49:44.448Z
Status : Modified
Published: 2022-12-20T05:15:11.587
Modified: 2025-04-16T18:15:48.793
Link: CVE-2022-25931
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA