Description
A path traversal in takeapeek module versions <=0.2.2 allows an attacker to list directory and files.
Remediation
References
https://hackerone.com/reports/403736
Related Vulnerabilities
CVE-2021-21348 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2017-16219 Vulnerability in npm package yttivy
CVE-2022-4244 Vulnerability in maven package org.codehaus.plexus:plexus-utils
CVE-2021-37137 Vulnerability in maven package io.netty:netty-codec
CVE-2023-34981 Vulnerability in maven package org.apache.tomcat:tomcat-coyote