All versions of package easy-static-server are vulnerable to Directory Traversal due to missing input sanitization and sandboxes being employed to the req.url user input that is passed to the server code.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| easy-static-server(npm) | 0 | N/A | N/A |
CVSS Metrics