file-browser@0.0.2 vulnerabilities

file-browser is a utility to browse files on your file system using your browser. Its equivalent of creating a file share that can be accessed over http

Direct Vulnerabilities

Known vulnerabilities in the file-browser package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Cross-site Scripting (XSS)

file-browser is an utility to browse files on your file system using your browser.

Affected versions of this package are vulnerable to Cross-site Scripting (XSS) due to improper output encoding and escaping. It was possible for an attacker to embed malicious js code as filenames, which get executed once browsed to the file over the web browser.

How to fix Cross-site Scripting (XSS)?

There is no fixed version for file-browser.

*