Lucene search

K
osvGoogleOSV:GHSA-2HW7-MXVJ-M455
HistoryJan 29, 2021 - 6:13 p.m.

Path traversal in Node-RED-Dashboard

2021-01-2918:13:52
Google
osv.dev
5

0.092 Low

EPSS

Percentile

94.7%

In Node-RED-Dashboard before 2.26.2 there is a path traversal vulnerability. It allows ui_base/js/…%2f directory traversal to read files.

CPENameOperatorVersion
node-red-dashboardlt2.26.2

0.092 Low

EPSS

Percentile

94.7%