CVE-2019-5437
3Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackepss 1.3%
probabilidad de explotación
1.3%top 32% de las CVE
explotación observada
noninguna fuente lo reporta
Information exposure through the directory listing in npm's harp module allows to access files that are supposed to be ignored according to the harp server rules.Vulnerable versions are <= 0.29.0 and no fix was applied to our knowledge.
Productos afectados
n/a · harpReferencias
https://hackerone.com/reports/453820