CVE-2022-25895

Publication date

2022-12-21 23:14:33

Family

snyk

State

PUBLISHED

Description

All versions of package lite-dev-server are vulnerable to Directory Traversal due to missing input sanitization and sandboxes being employed to the req.url user input that is passed to the server code.