Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-0018 | path-sanitizer is a simple lightweight npm package for sanitizing paths to prevent Path Traversal. Prior to 3.1.0, the filters can be bypassed using .=%5c which results in a path traversal. This vulnerability is fixed in 3.1.0. |
Github GHSA |
GHSA-94p5-r7cc-3rpr | path-sanitizer allows bypassing the existing filters to achieve path-traversal vulnerability |
Tue, 31 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 31 Dec 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | path-sanitizer is a simple lightweight npm package for sanitizing paths to prevent Path Traversal. Prior to 3.1.0, the filters can be bypassed using .=%5c which results in a path traversal. This vulnerability is fixed in 3.1.0. | |
| Title | path-sanitizer allows bypassing the existing filters to achieve path-traversal vulnerability | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-12-31T15:50:50.732Z
Reserved: 2024-12-18T18:29:25.895Z
Link: CVE-2024-56198
Updated: 2024-12-31T15:50:45.708Z
Status : Deferred
Published: 2024-12-31T16:15:27.247
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-56198
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA