Path Traversal Vulnerability in serve-here.js npm Module (Versions up to v1.1.3) Allows Unauthorized File Listing

Path Traversal Vulnerability in serve-here.js npm Module (Versions up to v1.1.3) Allows Unauthorized File Listing

CVE-2019-5444 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Path traversal vulnerability in version up to v1.1.3 in serve-here.js npm module allows attackers to list any file in arbitrary folder.

Learn more about our Web Application Penetration Testing UK.