Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2014-6394

N/A

visionmedia send before 0.8.4 for Node.js uses a partial comparison for verifying whether a directory is within the document root, which allows remote attackers to access restricted directories, as demonstrated using "public-restricted" under a "public" directory.

EPSS 4.34% above median percentile 90.3%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

  • Xcode macOS com.apple.dt.Xcode
    Affected Fixed in Latest tracked 26.6 undetermined
Vulnerable CPE configurations (1)
Vendor Product Versions
apple xcode
All platforms (wildcard)
View on NVD ↗