Description
stattic node module suffers from a Path Traversal vulnerability due to lack of validation of path, which allows a malicious user to read content of any file with known path.
Remediation
References
https://hackerone.com/reports/319003
Related Vulnerabilities
CVE-2023-43794 Vulnerability in npm package nocodb
CVE-2020-19698 Vulnerability in maven package org.webjars.npm:editor.md
CVE-2022-31367 Vulnerability in npm package strapi-plugin-content-type-builder
CVE-2021-39152 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2021-32850 Vulnerability in npm package @claviska/jquery-minicolors