Releases124
Frequency1 month 1 week
Last Release
Static Web Server/Generator/Bundler

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
<= 0.29.0, < 0.40.25 MEDIUM

Information exposure through the directory listing in npm's harp module allows to access files that are supposed to be ignored according to the harp server rules.Vulnerable versions are <= 0.29.0 and no fix was applied to our knowledge.

<= 0.29.0, < 0.40.35.3 MEDIUM5 MEDIUM

Path traversal using symlink in npm harp module versions <= 0.29.0.