Directory traversal in fast-http
High severity
GitHub Reviewed
Published
Jul 27, 2020
to the GitHub Advisory Database
•
Updated Jan 9, 2023
Description
Reviewed
Jul 27, 2020
Published to the GitHub Advisory Database
Jul 27, 2020
Last updated
Jan 9, 2023
This affects all versions of package fast-http. There is no path sanitization in the path provided at fs.readFile in index.js.
References