Loading HuntDB...

GHSA-gc34-5v43-h7v8

GitHub Security Advisory

nuxt Code Injection vulnerability

✓ GitHub Reviewed CRITICAL Has CVE

Advisory Details

he Nuxt dev server between versions 3.4.0 and 3.4.3 is vulnerable to code injection when it is exposed publicly.

Affected Packages

npm nuxt
Affected versions: 3.4.0 (fixed in 3.4.3)

Related CVEs

Key Information

GHSA ID
GHSA-gc34-5v43-h7v8
Published
June 13, 2023 6:30 PM
Last Modified
November 18, 2024 4:26 PM
CVSS Score
9.0 /10
Primary Ecosystem
npm
Primary Package
nuxt
GitHub Reviewed
✓ Yes

Dataset

Last updated: July 30, 2025 6:36 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.