🚨 High-severity security fix in @fastify/static@10.1.3 just released! Patches CVE-2026-18427: route guard bypass via non-canonical path segments github.com/fastify/fast...
@fastify/static vulnerable to route guard bypass via non-canonical path segments
### Impact `@fastify/static` 10.1.2 and earlier is vulnerable to a bypass of route-based middleware and guards via non-canonical `.` and `//` path segments. `find-my-way` does not normalize `.` se...
github.com