CVE-2018-3725
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 2.0%
exploitation probability
2.0%top 20% of all CVEs
observed exploitation
nono source reports it
hekto node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read content of any file with known path.
Affected products
HackerOne · hekto node moduleReferences
https://hackerone.com/reports/311218