VDB
KO
HIGH 8.1

GHSA-gc34-5v43-h7v8

nuxt Code Injection vulnerability

Details

he Nuxt dev server between versions 3.4.0 and 3.4.3 is vulnerable to code injection when it is exposed publicly.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm / nuxt
Introduced in: 3.4.0 Fixed in: 3.4.3
Fix npm install nuxt@3.4.3

References