CVE-2019-5437

Publication date

2019-05-10 21:07:37

Family

hackerone

State

PUBLISHED

Description

Information exposure through the directory listing in npms harp module allows to access files that are supposed to be ignored according to the harp server rules.Vulnerable versions are <= 0.29.0 and no fix was applied to our knowledge.