Description
A server directory traversal vulnerability was found on node module mcstatic <=0.0.20 that would allow an attack to access sensitive information in the file system by appending slashes in the URL path.
Recommendation
No fix is available yet. Followings are affected versions:
- <= 0.0.20
References
Could your website be exposed too?
SmartScanner can check your website for mcstatic directory traversal vulnerability and gives you actionable findings to investigate.
Start a free scanRelated Issues
- Stimulsoft Dashboard.JS directory traversal vulnerability - CVE-2024-24398
- Path Traversal in mcstatic - CVE-2018-3730
- Directory Traversal vulnerability in serve-lite - CVE-2022-21192
- React Native Document Picker Directory Traversal vulnerability - CVE-2024-25466
You might also like:
See something that needs correcting? Let us knowUpdated September 12, 2023


