CVE-2017-14849
28.09.2017, 01:29
Node.js 8.5.0 before 8.6.0 allows remote attackers to access unintended files, because a change to ".." handling was incompatible with the pathname validation used by unspecified community modules.
Vendor | Product | Version |
---|---|---|
nodejs | node.js | 8.5.0 |
𝑥
= Vulnerable software versions

Debian Releases
References