QID 981013
QID 981013: Nodejs (npm) Security Update for send (GHSA-jgqf-hwc5-hh37)
Versions of `send` prior to 0.11.2 are affected by an information leakage vulnerability which may allow an attacker to enumerate paths on the server filesystem.
## Recommendation
Update to version 0.11.1 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-jgqf-hwc5-hh37 for updates pertaining to this vulnerability.
Vendor References
- GHSA-jgqf-hwc5-hh37 -
github.com/advisories/GHSA-jgqf-hwc5-hh37
CVEs related to QID 981013
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-jgqf-hwc5-hh37 | send |
|