Description
Vitejs Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the victim's service.
Remediation
References
https://github.com/vitejs/vite/issues/8498
https://github.com/vitejs/vite/releases/tag/v2.9.13
https://github.com/vitejs/vite/releases/tag/v3.0.0-beta.4
Related Vulnerabilities
CVE-2021-45851 Vulnerability in npm package @frangoteam/fuxa
CVE-2022-25885 Vulnerability in npm package muhammara
CVE-2020-15170 Vulnerability in maven package com.ctrip.framework.apollo:apollo-adminservice
CVE-2021-21479 Vulnerability in maven package com.sap.scimono:scimono-server
CVE-2016-4469 Vulnerability in maven package org.apache.archiva:archiva-webapp