Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-vcxh-qvgr-9fw9: m.static Directory Traversal vulnerability

All versions of the package m.static are vulnerable to Directory Traversal due to improper input sanitization of the path being requested via the requestFile function.

ghsa
#vulnerability#git

m.static Directory Traversal vulnerability

High severity GitHub Reviewed Published May 10, 2023 to the GitHub Advisory Database • Updated May 11, 2023

Related news

CVE-2023-26126: Snyk Vulnerability Database | Snyk

All versions of the package m.static are vulnerable to Directory Traversal due to improper input sanitization of the path being requested via the requestFile function.