Description
Path traversal vulnerability in http-live-simulator npm package version 1.0.5 allows arbitrary path to be accessed on the file system by a remote attacker.
Remediation
References
https://hackerone.com/reports/384939
Related Vulnerabilities
CVE-2017-7525 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2020-28865 Vulnerability in maven package com.github.kfcfans:powerjob
CVE-2023-38704 Vulnerability in npm package import-in-the-middle
CVE-2022-31172 Vulnerability in npm package @openzeppelin/contracts
CVE-2021-3461 Vulnerability in maven package org.keycloak:keycloak-services