Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-7120 |
|
Vulnerability in @fastify/static (CVE-2026-7120)
vulnerability in @fastify/static (CVE-2026-7120). Risk of unauthorized operations or information disclosure. Exploitable via ``allowedPath``. Mitigation: upgrade to `10.1.2` or later.
|
| CVE-2026-15074 |
|
@fastify/static vulnerable to route guard bypass via path traversal
@fastify/static vulnerable to route guard bypass via path traversal
|