1.44.0
7 years ago
4 years ago
Known vulnerabilities in the browserless-chrome package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
browserless-chrome is a web-service that allows for remote clients to connect, drive, and execute headless work; all inside of docker. It offers first-class integrations for puppeteer, playwright, selenium's webdriver, and a slew of handy REST APIs for doing more common work. Affected versions of this package are vulnerable to Path Traversal. User input flowing from the workspace endpoint gets used to create a file path Note
This package no longer releases fixes to PoC
How to fix Path Traversal? Upgrade | <1.43.0 |