Description
Vitejs Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the victim's service.
Remediation
References
https://github.com/vitejs/vite/issues/8498
https://github.com/vitejs/vite/releases/tag/v2.9.13
https://github.com/vitejs/vite/releases/tag/v3.0.0-beta.4
Related Vulnerabilities
CVE-2021-23632 Vulnerability in npm package git
CVE-2021-29443 Vulnerability in npm package jose
CVE-2020-10991 Vulnerability in maven package org.mule.modules:mule-module-apikit
CVE-2023-34092 Vulnerability in npm package vite
CVE-2021-32827 Vulnerability in maven package org.mock-server:mockserver-core