Lucene search

K
osvGoogleOSV:GHSA-52R9-G5G6-2HJP
HistoryJul 26, 2018 - 2:50 p.m.

Path Traversal in node-srv

2018-07-2614:50:41
Google
osv.dev
6

0.002 Low

EPSS

Percentile

55.6%

Versions of node-srv before 2.1.1 are vulnerable to path traversal allowing a remote attacker to read files from the server that uses node-srv.

Recommendation

Update to version 2.1.1 or later.

CPENameOperatorVersion
node-srvlt2.1.1

0.002 Low

EPSS

Percentile

55.6%