Description
censorify.tanisjr is a simple web server and API RESTful service. censorify.tanisjr is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/censorify.tanisjr
https://nodesecurity.io/advisories/392
Related Vulnerabilities
CVE-2020-26939 Vulnerability in maven package org.bouncycastle:bcprov-ext-jdk15to18
CVE-2020-7632 Vulnerability in npm package node-mpv
CVE-2020-7602 Vulnerability in npm package node-prompt-here
CVE-2021-41189 Vulnerability in maven package org.dspace:dspace-api
CVE-2021-43785 Vulnerability in npm package @joeattardi/emoji-button