Information exposure through the directory listing in npms harp module allows to access files that are supposed to be ignored according to the harp server rules.Vulnerable versions are <= 0.29.0 and no fix was applied to our knowledge.
A directory listing is inappropriately exposed, yielding potentially sensitive information to attackers.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Harp | Harpjs | * | 0.29.0 (including) |