{"id":"CVE-2021-40349","details":"e7d Speed Test (aka speedtest) 0.5.3 allows a path-traversal attack that results in information disclosure via the \"GET /..\" substring.","modified":"2026-04-10T04:38:06.154745Z","published":"2021-09-27T06:15:07.960Z","references":[{"type":"ADVISORY","url":"https://github.com/e7d/speedtest/releases"},{"type":"FIX","url":"https://old.reddit.com/r/HackingTechniques/comments/poc55t/directory_traversal_bypass_on_e7d_speedtest/"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/e7d/speedtest","events":[{"introduced":"0"},{"last_affected":"d054b1114c3e11a070b6963153f6136bac95bef9"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"0.5.3"}]}}],"versions":["v0.0.1","v0.0.2","v0.1.0","v0.2.0","v0.3.0","v0.3.1","v0.3.3","v0.3.5","v0.4.0","v0.4.1","v0.5.0","v0.5.1","v0.5.3"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-40349.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"}]}