Vulnerabilities/

Vulnerability allowing for reading internal HTTP resources

Severity:
High

Description

The vulnerability allows for reading and outputting files served by other services on the internal network in which the export server is hosted. If the export server is exposed to the internet, this potentially allows a malicious user to gain read access to internal web-resources.

The impact is limited to internal services that serve content via.

Recommendation

Update the highcharts-export-server package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
highcharts-export-server
Anything's wrong? Let us know Last updated on January 09, 2023

This issue is available in SmartScanner Professional

See Pricing