CVE-2022-25931

Publication date

2022-12-21 01:21:43

Family

snyk

State

PUBLISHED

Description

All versions of package easy-static-server are vulnerable to Directory Traversal due to missing input sanitization and sandboxes being employed to the req.url user input that is passed to the server code.