Skip to content

Known CVE

esm.sh <= v136 - Local File Inclusion

esm.sh <= 136 contains a local file inclusion caused by improper URL handling, letting attackers read arbitrary files from the host filesystem remotely, exploit requires crafted request.

CVE-2025-59341

High2025CVSS 7.5CWE-23

cve2025 · esm · lfi · traversal

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website