sast_path_traversal
Detects path traversal vulnerabilities in file operations where user input is used without path.resolve() validation. Scans source code for unsafe fs.readFile, writeFile, readdir, unlink calls.
Instructions
AST-scan for path traversal: fs.readFile(), writeFile(), readdir(), unlink() — where path argument includes user input without path.resolve() validation.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| path | Yes | Directory path containing source files to analyze |