HIGH 8.6 npm

Vite before v2.9.13 vulnerable to directory traversal via crafted URL to victim's service

GHSA-mv48-hcvh-8jj8 · CVE-2022-35204

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the victim's service.

Ready to move

Start Securing

Free, no credit card | First findings in minutes