You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Arbitrary remote Code Execution when accessing a malicious website while Vitest API server is listening by Cross-site WebSocket hijacking (CSWSH) attacks.
The text was updated successfully, but these errors were encountered:
JennaySDavis
changed the title
Reuse
Dependabot Alert: Vitest allows Remote Code Execution when accessing a malicious website while Vitest API server is listening
Feb 4, 2025
Includes the following Sprint 49 issues:
Dependabot Alert: Websites were able to send any requests to the development server and read the response in vite #753
Dependabot Alert: Vitest allows Remote Code Execution when accessing a malicious website while Vitest API server is listening #750
Includes the following Sprint 49 issues:
Dependabot Alert: Websites were able to send any requests to the development server and read the response in vite #753
Dependabot Alert: Vitest allows Remote Code Execution when accessing a malicious website while Vitest API server is listening #750
Arbitrary remote Code Execution when accessing a malicious website while Vitest API server is listening by Cross-site WebSocket hijacking (CSWSH) attacks.
The text was updated successfully, but these errors were encountered: