superstatic@2.1.2 vulnerabilities

A static file server for fancy apps

Direct Vulnerabilities

Known vulnerabilities in the superstatic package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Directory Traversal

superstatic is an enhanced static web server that was built to power.

Affected versions of this package are vulnerable to Directory Traversal. A malicious user may read arbitrary files from outside the working directory when running on the Windows platform.

How to fix Directory Traversal?

Upgrade superstatic to version 5.0.2 or higher.

<5.0.2