nhouston@1.0.1 vulnerabilities

Houston :: A simple static server based on node.js

Direct Vulnerabilities

Known vulnerabilities in the nhouston package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Directory Traversal

All versions of the static file server module nhouston are vulnerable to directory traversal. An attacker can provide input such as ../ to read files outside of the served directory.

Source: Node Security Project

How to fix Directory Traversal?

It is recommended that a different module be used, as Node Security Project have been unable to reach the maintainer of this module.
