bitty@0.0.8 vulnerabilities

Browserify live editing server

Direct Vulnerabilities

Known vulnerabilities in the bitty package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Directory Traversal

bitty is a live editing server. All versions of the package do not properly prevent path traversal. A request like /../../../../../../etc/passwd would leak sensitive files and data from the server.

How to fix Directory Traversal?

There is no fix version for bitty. The maintainer of the package plans to unpublish it from the npm registry.

*