Netskope Threat Labs

FILE-OTHER Hexojs Hexo includeCodeTag directory traversal attempt

IPS-CFWIPS-SWG

2 SIDs: 66989, 66991

Detects requests exploiting CVE-2023-39584, a directory traversal in the Hexo static site generator's code include helper. The crafted paths read files outside the intended content directory on the server.