VYPR
Medium severity5.7NVD Advisory· Published Aug 3, 2023· Updated Jun 17, 2026

CVE-2023-3348

CVE-2023-3348

Description

The Wrangler command line tool  (<[email protected] or <[email protected]) was affected by a directory traversal vulnerability when running a local development server for Pages (wrangler pages dev command). This vulnerability enabled an attacker in the same network as the victim to connect to the local development server and access the victim's files present outside of the directory for the development server.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
wranglernpm
< 2.20.12.20.1

Affected products

3
  • cpe:2.3:a:cloudflare:wrangler:*:*:*:*:*:node.js:*:*+ 1 more
    • cpe:2.3:a:cloudflare:wrangler:*:*:*:*:*:node.js:*:*range: <3.1.1
    • (no CPE)range: 3
  • ghsa-coords
    Range: < 2.20.1

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.