Description
serverwg is a simple http server. serverwg is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the URL.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/tree/master/directory-traversal/serverwg
https://nodesecurity.io/advisories/364
Related Vulnerabilities
CVE-2023-38690 Vulnerability in npm package matrix-appservice-irc
CVE-2020-28459 Vulnerability in npm package markdown-it-decorate
CVE-2023-45137 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2016-10541 Vulnerability in npm package shell-quote
CVE-2023-40349 Vulnerability in maven package org.jenkins-ci.plugins:gogs-webhook