MEDIUM GitHub
CVE-2016-1000305
guard-livereload has a directory traversal vulnerability
The vulnerability allows remote attackers to read arbitrary files
on the server by exploiting improper path validation in the
livereload server functionality.
This vulnerability is related to the handling of file paths in the
livereload server component, which could allow an attacker to traverse
directories and access files outside the intended web root directory.
The issue was identified and reported through the DWF (Distributed
Weakness Filing) project, which assigns CVE identifiers for
secu
Affected Products
- rubygems/guard-livereload < 2.5.2
References
- https://github.com/advisories/GHSA-g65v-27r3-5p6m
- https://github.com/guard/guard-livereload/issues/159
- https://github.com/guard/guard-livereload/pull/158
- https://github.com/guard/guard-livereload/commit/0e98469e6b9d81a5bd415781534a23d087c271f8
This medium severity vulnerability was published on 2026-07-31 via GitHub. Affected: rubygems/guard-livereload < 2.5.2.
vulnfeed aggregates 9166 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.