Description
serverhuwenhui is a simple http server. serverhuwenhui is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the URL.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/tree/master/directory-traversal/serverhuwenhui
https://nodesecurity.io/advisories/366
Related Vulnerabilities
CVE-2018-3731 Vulnerability in npm package public
CVE-2018-3750 Vulnerability in npm package deep-extend
CVE-2022-25901 Vulnerability in maven package org.webjars.npm:cookiejar
CVE-2022-36091 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2022-24818 Vulnerability in maven package org.geotools:gt-metadata