QID 983426
QID 983426: Nodejs (npm) Security Update for mcstatic (GHSA-3r8f-gphx-9m2c)
All versions of `mcstatic` are vulnerable to path traversal.
## Recommendation
No fix is currently available for this vulnerability. It is our recommendation to not install or use this module at this time.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-3r8f-gphx-9m2c for updates pertaining to this vulnerability.
Vendor References
- GHSA-3r8f-gphx-9m2c -
github.com/advisories/GHSA-3r8f-gphx-9m2c
CVEs related to QID 983426
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-3r8f-gphx-9m2c | mcstatic |
|