Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7270 | This affects all versions of package static-dev-server. This is because when paths from users to the root directory are joined, the assets for the path accessed are relative to that of the root directory. |
Github GHSA |
GHSA-7fxm-c848-89q8 | static-dev-server vulnerable to path traversal |
Thu, 24 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2025-04-24T17:53:10.185Z
Reserved: 2022-02-24T00:00:00.000Z
Link: CVE-2022-25848
Updated: 2024-08-03T04:49:44.109Z
Status : Modified
Published: 2022-11-29T17:15:11.123
Modified: 2025-04-24T18:15:16.343
Link: CVE-2022-25848
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA