CVE-2018-3725
Published Jun 7, 2018hekto node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read content of any file with known path.
Vendor/product archive
2 CVEs tagged to hekto_project / hekto — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
hekto node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read content of any file with known path.
Open redirect in hekto <=0.2.3 when target domain name is used as html filename on server.