Skip to content

security_identifier

CVE-2026-39364

Identifier for a high-severity access control bypass in Vite's development server, in which appended query parameters defeat the server.fs.deny file deny list and return blocked files in plaintext.

Known aliases

  • server.fs.deny bypass

Relationships

No evidence-backed relationships are recorded.

Current clusters