cbcvebase.
CVE-2021-26504
published 2023-08-11

CVE-2021-26504: Directory Traversal vulnerability in Foddy node-red-contrib-huemagic version 3.0.0, allows remote attackers to gain sensitive information via crafted request…

PriorityP344high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
1.41%
69.2th percentile
Directory Traversal vulnerability in Foddy node-red-contrib-huemagic version 3.0.0, allows remote attackers to gain sensitive information via crafted request in res.sendFile API in hue-magic.js.

Affected

1 ranges
VendorProductVersion rangeFixed in
dgtlhuemagic
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.