Description
censorify.tanisjr is a simple web server and API RESTful service. censorify.tanisjr is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/censorify.tanisjr
https://nodesecurity.io/advisories/392
Related Vulnerabilities
CVE-2015-8862 Vulnerability in maven package org.webjars.bower:mustache
CVE-2021-4245 Vulnerability in maven package org.webjars.npm:rfc6902
CVE-2018-3721 Vulnerability in npm package lodash
CVE-2022-42920 Vulnerability in maven package org.apache.bcel:bcel
CVE-2020-28436 Vulnerability in npm package google-cloudstorage-commands