CVE-2018-3730
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 2.0%
exploitation probability
2.0%top 20% of all CVEs
observed exploitation
nono source reports it
mcstatic node module suffers from a Path Traversal vulnerability due to lack of validation of filePath, which allows a malicious user to read content of any file with known path.
Affected products
HackerOne · mcstatic node moduleReferences
https://hackerone.com/reports/312907