Description
xtalk helps your browser talk to nodex, a simple web framework. xtalk is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the URL.
Remediation
References
https://nodesecurity.io/advisories/339
Related Vulnerabilities
CVE-2018-14041 Vulnerability in maven package org.webjars.npm:bootstrap
CVE-2020-27218 Vulnerability in maven package org.eclipse.jetty:jetty-server
CVE-2020-7720 Vulnerability in npm package node-forge
CVE-2023-41592 Vulnerability in npm package froala-editor
CVE-2023-33725 Vulnerability in maven package org.broadleafcommerce:broadleaf