Static file serving and directory listing
79%
Total Score
47
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2018-3718 serve is vulnerable to Improper Handling of URL Encoding (Hex Encoding) in versions 0.0.0 - 6.5.2. | 0.0.0 - 6.5.2 | Medium |
CVE-2019-5415 serve is vulnerable to Exposure of Information Through Directory Listing in versions 0.0.0 - 7.0.0. | 0.0.0 - 7.0.0 | High |
CVE-2019-5417 serve is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 7.1.3. | 0.0.0 - 7.1.3 | High |
CVE-2018-3712 serve is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 6.4.8. | 0.0.0 - 6.4.8 | Medium |
CVE-2018-3809 serve is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 0.0.0 - 7.0.0. | 0.0.0 - 7.0.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
ajv Version 8.18.0 | — | — |
arg Version 5.0.2 | — | — |
boxen Version 7.0.0 | — | — |
chalk Version 5.0.1 | — | — |
clipboardy Version 3.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant