cve/2015/CVE-2015-8856.md
2024-05-26 14:27:05 +02:00

642 B

CVE-2015-8856

Description

Cross-site scripting (XSS) vulnerability in the serve-index package before 1.6.3 for Node.js allows remote attackers to inject arbitrary web script or HTML via a crafted file or directory name.

POC

Reference

No PoCs from references.

Github