Description
Path traversal in buttle module versions <= 0.2.0 allows to read any file in the server.
Remediation
References
https://hackerone.com/reports/358112
Related Vulnerabilities
CVE-2016-9177 Vulnerability in maven package com.sparkjava:spark-core
CVE-2021-21391 Vulnerability in npm package @ckeditor/ckeditor5-widget
CVE-2022-46175 Vulnerability in maven package org.webjars.npm:json5
CVE-2013-6235 Vulnerability in maven package com.jamonapi:jamon
CVE-2021-22132 Vulnerability in maven package org.elasticsearch:elasticsearch