CVE-2018-3725
Published Jun 7, 2018hekto node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read content of any file with known path.
Vendor archive
2 CVEs tagged to vendor hekto_project — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
hekto node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read content of any file with known path.
Open redirect in hekto <=0.2.3 when target domain name is used as html filename on server.