Войти
  • 2619Просмотров
  • 8 месяцев назадОпубликованоAlexander Lichter

About the recent Vite CVEs 👀

Vite published a series of CVEs (security issues and their patches) recently. In this video we have a look how serious they are, what you should do (update!) and even try out one of the vulnerabilities with an older version. --- Links and Resources 🔗 First CVE (published January) 🔗 ?raw?? CVE 🔗 ?import query CVE 🔗.svg & relative paths CVE 🔗Request Target CVE 🎬 Package Overrides --- Chaptermarks 00:00 Intro 00:43 Disclaimer & Update! 01:23 Important: Dev Server Only Vulnerability 02:02 First CVE - Any request to the dev server 04:39 Mitigation strategies 07:04 Testing out the exploit 10:12 With the mitigation in place 10:49 The group of four recent CVEs 15:35 What do that many CVEs mean? 16:44 Wrapping up --- Links marked with * are affiliate links. I get a small commission when you register for the service or buy the product through my link. This helps me keeping the channel running. I only include affiliate links for services or product mentioned that we use ourselves or have good experience with.