CVE-2024-36527

Publication date

2024-06-17 00:00:00

Family

mitre

State

PUBLISHED

Description

puppeteer-renderer v.3.2.0 and before is vulnerable to Directory Traversal. Attackers can exploit the URL parameter using the file protocol to read sensitive information from the server.