Description
serveryaozeyan is a simple HTTP server. serveryaozeyan is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the URL.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/tree/master/directory-traversal/serveryaozeyan
https://nodesecurity.io/advisories/355
Related Vulnerabilities
CVE-2021-38384 Vulnerability in npm package serverless-offline
CVE-2022-24437 Vulnerability in npm package git-pull-or-clone
CVE-2023-40814 Vulnerability in maven package org.opencrx:opencrx-core-models
CVE-2021-42550 Vulnerability in maven package ch.qos.logback:logback-core
CVE-2017-16104 Vulnerability in npm package citypredict.whauwiller