Vulnerabilities (CVE)

Filtered by vendor Nbluis Subscribe
Filtered by product Static-server
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-26152 1 Nbluis 1 Static-server 2024-11-21 N/A 7.5 HIGH
All versions of the package static-server are vulnerable to Directory Traversal due to improper input sanitization passed via the validPath function of server.js.