#adonisjs

[ follow ]
Information security
fromThe Hacker News
3 days ago

Critical AdonisJS Bodyparser Flaw (CVSS 9.2) Enables Arbitrary File Write on Servers

Critical path traversal in @adonisjs/bodyparser's MultipartFile.move can allow arbitrary file writes and potential RCE; update the package to the patched version.
[ Load more ]