Description
unicorn-list is a web framework. unicorn-list is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/unicorn-list
https://nodesecurity.io/advisories/477
Related Vulnerabilities
CVE-2022-37616 Vulnerability in maven package org.webjars.npm:xmldom__xmldom
CVE-2021-21661 Vulnerability in maven package org.jenkins-ci.plugins:kubernetes-cli
CVE-2020-7775 Vulnerability in npm package freediskspace
CVE-2022-0512 Vulnerability in npm package url-parse
CVE-2022-23221 Vulnerability in maven package com.h2database:h2