Description
Vitejs Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the victim's service.
Remediation
References
https://github.com/vitejs/vite/issues/8498
https://github.com/vitejs/vite/releases/tag/v2.9.13
https://github.com/vitejs/vite/releases/tag/v3.0.0-beta.4
Related Vulnerabilities
CVE-2023-37460 Vulnerability in maven package org.codehaus.plexus:plexus-archiver
CVE-2021-31597 Vulnerability in npm package xmlhttprequest-ssl
CVE-2020-7760 Vulnerability in npm package codemirror
CVE-2021-43306 Vulnerability in maven package org.webjars:jquery-validation
CVE-2013-2251 Vulnerability in maven package org.apache.struts:struts2-core