3.0.260522-beta
13 years ago
2 days ago
Known vulnerabilities in the nitro package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
nitro is a Build and Deploy Universal JavaScript Servers Affected versions of this package are vulnerable to Directory Traversal via the Note: This is only exploitable if the project uses proxy route rules with a wildcard suffix, the upstream decodes percent-encoded slashes before routing, and proxy rules are not handled natively at the CDN. How to fix Directory Traversal? Upgrade | <3.0.260429-beta |
nitro is a Build and Deploy Universal JavaScript Servers Affected versions of this package are vulnerable to Open Redirect via the How to fix Open Redirect? Upgrade | <3.0.260429-beta |