CVE-2018-3744: Html-Pages Project Html-Pages

Critical severity, CVSS 9.8. EPSS: 2.2% chance of exploitation in the next 30 days.

The html-pages node module contains a path traversal vulnerabilities that allows an attacker to read any file from the server with cURL.

Affected products

Published 2018-05-29. Last modified 2026-06-17.