Lucene search

K
osvGoogleOSV:GHSA-FRPW-JRWX-HCFV
HistoryApr 13, 2021 - 3:30 p.m.

Path Traversal in node-red-contrib-huemagic

2021-04-1315:30:00
Google
osv.dev
9

0.282 Low

EPSS

Percentile

96.9%

node-red-contrib-huemagic 3.0.0 is affected by hue/assets/..%2F Directory Traversal.in the res.sendFile API, used in file hue-magic.js, to fetch an arbitrary file.

CPENameOperatorVersion
node-red-contrib-huemagicle3.0.0

0.282 Low

EPSS

Percentile

96.9%

Related for OSV:GHSA-FRPW-JRWX-HCFV