Vulnerabilities/

Nuxt has Client-Side Path Traversal in Nuxt Island Payload Revival

Severity:
Low

Description

A client-side path traversal vulnerability in Nuxt’s Island payload revival mechanism allowed attackers to manipulate client-side requests to different endpoints within the same application domain when specific prerendering conditions are met.

Recommendation

Update the nuxt package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
nuxt
Anything's wrong? Let us know Last updated on September 18, 2025

This issue is available in SmartScanner Professional

See Pricing