Description
Bitty is a development web server tool that functions similar to `python -m SimpleHTTPServer`. Version 0.2.10 has a directory traversal vulnerability that is exploitable via the URL path in GET requests.
Remediation
References
https://nodesecurity.io/advisories/150
Related Vulnerabilities
CVE-2018-25074 Vulnerability in npm package skeemas
CVE-2022-24709 Vulnerability in npm package @awsui/components-react
CVE-2021-23424 Vulnerability in npm package ansi-html
CVE-2022-34305 Vulnerability in maven package org.apache.tomcat:tomcat
CVE-2017-12633 Vulnerability in maven package org.apache.camel:camel-hessian