Vite server.fs.deny Bypass via .svg/Relative Paths with PoC
Security AdvisoryMediumVite
Affected:
- Vite >=6.2.0, <=6.2.4
- Vite >=6.1.0, <=6.1.3
- Vite >=6.0.0, <=6.0.13
- Vite >=5.0.0, <=5.4.16
- Vite <=4.5.11
Fixed in:
- Vite >=6.2.5
- Vite >=6.1.4, <6.2.0
- Vite >=6.0.14, <6.1.0
- Vite >=5.4.17, <6.0.0
- Vite >=4.5.12, <5.0.0
Referenced CVEs: CVE-2025-31486 · 5.3 Top EPSS
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.