
Synthetic vulnerable Node.js HTTP server used as a demo target for the EXPOSURE vulnerability scanner, tracking CVE-2021-23797 with a one-click PR-based fix workflow.
This repository is a synthetic demo target for Endor Labs EXPOSURE.
CVE-2021-23797 (no upstream fix; mitigated only via a compensating control).This repo is not a production application. It exists only to anchor the EXPOSURE "click → real PR opens" demo against a real GitHub repository.