Description
Directory traversal vulnerability in cordova-plugin-ionic-webview versions prior to 2.2.0 (not including 2.0.0-beta.0, 2.0.0-beta.1, 2.0.0-beta.2, and 2.1.0-0) allows remote attackers to access arbitrary files via unspecified vectors.
Remediation
References
http://jvn.jp/en/jp/JVN60497148/index.html
https://github.com/ionic-team/cordova-plugin-ionic-webview
https://jvn.jp/en/jp/JVN69812763/index.html
https://www.npmjs.com/advisories/746
Related Vulnerabilities
CVE-2017-16013 Vulnerability in npm package hapi
CVE-2021-43787 Vulnerability in npm package nodebb
CVE-2020-9492 Vulnerability in maven package org.apache.hadoop:hadoop-hdfs-client
CVE-2019-10249 Vulnerability in maven package org.eclipse.xtext:org.eclipse.xtext.maven.parent
CVE-2023-44487 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core