Description
liyujing is a static file server. liyujing is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/tree/master/directory-traversal/liyujing
https://nodesecurity.io/advisories/387
Related Vulnerabilities
CVE-2018-3754 Vulnerability in npm package query-mysql
CVE-2023-29528 Vulnerability in maven package org.xwiki.commons:xwiki-commons-xml
CVE-2017-1000228 Vulnerability in maven package org.webjars.npm:ejs
CVE-2020-8203 Vulnerability in maven package org.webjars:lodash
CVE-2019-16869 Vulnerability in maven package org.jboss.netty:netty