QID 981275
QID 981275: Nodejs (npm) Security Update for serve (GHSA-686g-3xr3-x4x6)
Versions of `serve` before 7.0.0 are vulnerable to information exposure, bypassing the ignore security control, but only on case insensitive file systems.
## Recommendation
Update to version 7.0.0 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-686g-3xr3-x4x6 for updates pertaining to this vulnerability.
Vendor References
- GHSA-686g-3xr3-x4x6 -
github.com/advisories/GHSA-686g-3xr3-x4x6
CVEs related to QID 981275
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-686g-3xr3-x4x6 | serve |
|