QID 983860
QID 983860: Nodejs (npm) Security Update for glance (GHSA-2x4q-6jfv-8h9h)
Versions of `glance` before 3.0.4 are vulnerable to path traversal allowing a remote attacker to read arbitrary files from the server using `glance`. ## Recommendation Update to version 3.0.4 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-2x4q-6jfv-8h9h for updates pertaining to this vulnerability.
Vendor References
- GHSA-2x4q-6jfv-8h9h -
github.com/advisories/GHSA-2x4q-6jfv-8h9h
CVEs related to QID 983860
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-2x4q-6jfv-8h9h | glance |
|