Zeit
Zeit Serve: vulnerabilidades y CVE
Zeit Serve tiene 5 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2019-5417 | Alta (7.5) | 2.3% | — | 21 mar 2019 | A path traversal vulnerability in serve npm package version 7.0.1 allows the attackers to read content of arbitrary files on the remote server. |
| CVE-2019-5415 | Alta (7.5) | 1.6% | — | 21 mar 2019 | A bug in handling the ignore files and directories feature in serve 6.5.3 allows an attacker to read a file or list the directory that the victim has not allowed access to. |
| CVE-2018-3718 | Media (5.3) | 1.3% | — | 7 jun 2018 | serve node module suffers from Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded. |
| CVE-2018-3712 | Media (6.5) | 1.8% | — | 7 jun 2018 | serve node module before 6.4.9 suffers from a Path Traversal vulnerability due to not handling %2e (.) and %2f (/) and allowing them in paths, which allows a malicious user to view the contents of any directory with… |
| CVE-2018-3809 | Media (5.3) | 1.0% | — | 1 jun 2018 | Information exposure through directory listings in serve 6.5.3 allows directory listing and file access even when they have been set to be ignored. |