crud-file-server node module prior to 0.9.0 suffers from a Path Traversal vulnerability due to incorrect validation of url, which allows a malicious user to read content of any file with known path.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
crud-file-server project crud-file-server |