CVE-2018-3713: Angular-HTTP-Server Project Angular-HTTP-Server
Medium severity, CVSS 6.5. EPSS: 1.5% chance of exploitation in the next 30 days.
angular-http-server node module suffers from a Path Traversal vulnerability due to lack of validation of possibleFilename, which allows a malicious user to read content of any file with known path.
Affected products
- Angular-HTTP-Server Project Angular-HTTP-Server: any version
Published 2018-06-07. Last modified 2026-06-17.