GHSA-j38m-7q52-fgfh
HIGHCVE-2017-16124Affected versions of node-server-forfront resolve relative file paths, resulting in a directory traversal vulnerability. A malicious actor can use this vulnerability to access files outside of the intended directory root, which may result in the disclosure of private files on the vulnerable system.
- Affected
- <= 0.10.7
- Fixed in
- not stated
- Weakness
- CWE-22
- Published
- 2018-07-23
- Source
- github