Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Michael Dawson

#37208of 53,632
7.5Total CVSS
Vulnerabilities · 1
PT-2017-13726
7.5
2017-09-28
Node.Js · Node.Js · CVE-2017-14849
**Name of the Vulnerable Software and Affected Versions** Node.js versions 8.5.0 **Description** The issue allows remote attackers to access unintended files due to a change in ".." handling that is incompatible with the pathname validation used by community modules. **Recommendations** For Node.js version 8.5.0, update to version 8.6.0 or later to resolve the issue.