Serve your rolled up bundle
Known vulnerabilities in the rollup-plugin-serve package. This does not include vulnerabilities belonging to this package’s dependencies.Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
rollup-plugin-serve is a rollup plugin to serve the bundle.
Affected versions of this package are vulnerable to Directory Traversal. There is no path sanitization in
PoC by JHU System Security Lab
Step 1: start a server
Step 2: create a file named
How to fix Directory Traversal?
There is no fixed version for