VDB
Sign up
HIGH7.5

GHSA-v3px-6cc8-f8j3

Path traversal in servey

Quick fix

GHSA-v3px-6cc8-f8j3 — servey: upgrade to the fixed version with the command below.

npm install servey@3.3.2

Details

A path traversal vulnerability in servey versions prior to 3.3.2 allows an attacker to read content of any arbitrary file.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/servey
Introduced in: 0Fixed in: 3.3.2
Fixnpm install servey@3.3.2

References