QID 983407
QID 983407: Nodejs (npm) Security Update for http-live-simulator (GHSA-2hhw-p8mg-jrm6)
Versions of `http-live-simulator` prior to 1.0.6 are vulnerable to Path Traversal. Due to insufficient input sanitization, attackers can access server files by using relative paths.
## Recommendation
Upgrade to version 1.0.6
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-2hhw-p8mg-jrm6 for updates pertaining to this vulnerability.
Vendor References
- GHSA-2hhw-p8mg-jrm6 -
github.com/advisories/GHSA-2hhw-p8mg-jrm6
CVEs related to QID 983407
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-2hhw-p8mg-jrm6 | http-live-simulator |
|