node-srv@1.2.6 vulnerabilities

Simple static node.js server

Direct Vulnerabilities

Known vulnerabilities in the node-srv package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Directory Traversal

node-srv is a simple static node.js server. Supports Heroku and Grunt.js.

Affected versions of this package are vulnerable to Directory Traversal. It allows malicious user to read content of any file with known path.

How to fix Directory Traversal?

Upgrade node-srv to version 2.1.1 or higher.

<2.1.1
  • H
Directory Traversal

node-srv is a simple static node.js server. Supports Heroku and Grunt.js.

Affected versions of this package are vulnerable to Directory Traversal. It allows malicious user to read content of any file with known path.

How to fix Directory Traversal?

Upgrade node-srv to version 2.1.1 or higher.

<2.1.1