Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-59341

Опубликовано: 17 сент. 2025
Источник: nvd
EPSS Низкий

Описание

esm.sh is a nobuild content delivery network(CDN) for modern web development. In 136 and earlier, a Local File Inclusion (LFI) issue was identified in the esm.sh service URL handling. An attacker could craft a request that causes the server to read and return files from the host filesystem (or other unintended file sources).

EPSS

Процентиль: 30%
0.0011
Низкий

Дефекты

CWE-23

Связанные уязвимости

github
5 месяцев назад

esm.sh has File Inclusion issue

EPSS

Процентиль: 30%
0.0011
Низкий

Дефекты

CWE-23