[jira] [Updated] (THRIFT-4647) [CVE-2018-11798] Node.js Fileserver webroot path

2019-01-07 Thread James E. King III (JIRA)
[ https://issues.apache.org/jira/browse/THRIFT-4647?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] James E. King III updated THRIFT-4647: -- Affects Version/s: 0.9.2 > [CVE-2018-11798] Node.js Fileserver webroot path > ---

[jira] [Updated] (THRIFT-4647) [CVE-2018-11798] Node.js Fileserver webroot path

2019-01-07 Thread James E. King III (JIRA)
[ https://issues.apache.org/jira/browse/THRIFT-4647?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] James E. King III updated THRIFT-4647: -- Description: Node.js fileserver allows for escaping the set file path  https://cve.mi

[jira] [Updated] (THRIFT-4647) [CVE-2018-11798] Node.js Fileserver webroot path

2019-01-07 Thread James E. King III (JIRA)
[ https://issues.apache.org/jira/browse/THRIFT-4647?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] James E. King III updated THRIFT-4647: -- Labels: SECURITY (was: ) > [CVE-2018-11798] Node.js Fileserver webroot path > --

[jira] [Updated] (THRIFT-4647) [CVE-2018-11798] Node.js Fileserver webroot path

2019-01-07 Thread James E. King III (JIRA)
[ https://issues.apache.org/jira/browse/THRIFT-4647?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] James E. King III updated THRIFT-4647: -- Summary: [CVE-2018-11798] Node.js Fileserver webroot path (was: Node.js Fileserver w