0.2.12
6 years ago
3 years ago
Known vulnerabilities in the hangersteak package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for freeVulnerability | Vulnerable Version |
---|---|
hangersteak is a Node static file web server Affected versions of this package are vulnerable to Directory Traversal through the url which doesn't verify the file is from the root directory path. PoC
How to fix Directory Traversal? Upgrade | <0.2.5 |