Description
All versions of the package m.static are vulnerable to Directory Traversal due to improper input sanitization of the path being requested via the requestFile function.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1627 | m.static Directory Traversal vulnerability |
Github GHSA |
GHSA-vcxh-qvgr-9fw9 | m.static Directory Traversal vulnerability |
References
History
Mon, 27 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2025-01-27T18:38:31.700Z
Reserved: 2023-02-20T10:28:48.924Z
Link: CVE-2023-26126
Updated: 2024-08-02T11:39:06.616Z
Status : Modified
Published: 2023-05-10T05:15:08.860
Modified: 2025-01-27T19:15:14.747
Link: CVE-2023-26126
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA