Vulnerabilities/

Gatsby develop server has Local File Inclusion vulnerability

Severity:
Medium

Description

The Gatsby framework prior to versions 4.25.7 and 5.9.1 contain a Local File Inclusion vulnerability in the __file-code-frame and __original-stack-frame paths, exposed when running the Gatsby develop server (gatsby develop).

Recommendation

Update the gatsby package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
gatsby
Anything's wrong? Let us know Last updated on November 11, 2023

This issue is available in SmartScanner Professional

See Pricing