CVE-2023-39584
npm/hexo
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Hexo up to v7.0.0 (RC2) was discovered to contain an arbitrary file read vulnerability.
All versions up to 6.3.0, version 7.0.0
Unfortunately, there is no solution available yet.
2023-09-14
source |