Vulnerability in vitest
Severity: critical
CVE: No CVE listed
Vulnerable range: <=3.2.5
Advisory: GHSA-5xrq-8626-4rwp
Description: When Vitest UI server is listening, arbitrary file can be read and executed
Fix recommendation
Upgrade to vitest@4.1.10 — run npm audit fix
Affected paths
Automatically detected by dependency vulnerability scan.
Vulnerability in
vitestSeverity: critical
CVE: No CVE listed
Vulnerable range: <=3.2.5
Advisory: GHSA-5xrq-8626-4rwp
Description: When Vitest UI server is listening, arbitrary file can be read and executed
Fix recommendation
Upgrade to
vitest@4.1.10— runnpm audit fixAffected paths
Automatically detected by dependency vulnerability scan.