Description
Vitejs Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the victim's service.
Remediation
References
https://github.com/vitejs/vite/issues/8498
https://github.com/vitejs/vite/releases/tag/v2.9.13
https://github.com/vitejs/vite/releases/tag/v3.0.0-beta.4
Related Vulnerabilities
CVE-2020-14966 Vulnerability in maven package org.webjars.bowergithub.kjur:jsrsasign
CVE-2020-21122 Vulnerability in maven package com.bstek.ureport:ureport2-console
CVE-2022-2596 Vulnerability in maven package org.webjars.npm:node-fetch
CVE-2018-16461 Vulnerability in npm package libnmap
CVE-2017-18349 Vulnerability in maven package com.alibaba:fastjson