Arbitrary File Access
Discription

image
@graphql-mesh is vulnerable to Arbitrary File Access. The vulnerability is due to a missing validation check in the static file handler, which fails to restrict absolutePath to the designated staticFiles directory, allows attackers to access files outside the intended…Read More

Back to Main

Subscribe for the latest news: