Severity
Medium
Analysis Summary
CVE-2022-25937
Node.js glance could allow a remote attacker to traverse directories on the system . An attacker could send a specially-crafted URL request to view arbitrary files on the system.
Impact
- Information Theft
Indicators Of Compromise
CVE
- CVE-2022-25937
Affected Vendors
Node.js
Affected Products
- Node.js glance 3.0.8
Remediation
Refer to glance GIT Rpository for patch, upgrade or suggested workaround information.

