CVE-2019-5423
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 2.8%
exploitation probability
2.8%top 14% of all CVEs
observed exploitation
nono source reports it
Path traversal vulnerability in http-live-simulator npm package version 1.0.5 allows arbitrary path to be accessed on the file system by a remote attacker.
Affected products
Npm, Inc. · http-live-simulatorReferences
https://hackerone.com/reports/384939