Vulnerability
CVE-2023-26152
[CVE-2023-26152] CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Description
All versions of the package static-server are vulnerable to Directory Traversal due to improper input sanitization passed via the validPath function of server.js.
Deviation Notice:
Sonatype's research suggests that this CVE's details differ from those
defined at NVD or other reporting sources; sign in for details.
Sign up and see:
Detailed deviation notices:
- Detailed deviations
- References
- Custom Descriptions [Coming Soon]