pillarjs/resolve-path

pillarjs/resolve-path

Releases10
Frequency5 months 6 days
Last Release
Stars34
Resolve a relative path against a root path with validation

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

resolve-path node module before 1.4.0 suffers from a Path Traversal vulnerability due to lack of validation of paths with certain special characters, which allows a malicious user to read content of any file with known path.