VYPR
High severity7.5OSV Advisory· Published Mar 21, 2019· Updated Jun 17, 2026

CVE-2019-5415

CVE-2019-5415

Description

A bug in handling the ignore files and directories feature in serve 6.5.3 allows an attacker to read a file or list the directory that the victim has not allowed access to.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
servenpm
< 7.0.07.0.0

Affected products

3
  • ghsa-coords
    Range: < 7.0.0
  • Zeit/ServeOSV2 versions
    0.1.0, 0.1.1, 0.2.1, …+ 1 more
    • (no CPE)range: 0.1.0, 0.1.1, 0.2.1, …
    • cpe:2.3:a:zeit:serve:6.5.3:*:*:*:*:node.js:*:*

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.