Description
Path traversal using symlink in npm harp module versions <= 0.29.0.
Remediation
References
https://hackerone.com/reports/530289
Related Vulnerabilities
CVE-2020-8823 Vulnerability in npm package sockjs
CVE-2021-26543 Vulnerability in npm package git-parse
CVE-2019-20364 Vulnerability in maven package org.igniterealtime.openfire:xmppserver
CVE-2022-24431 Vulnerability in npm package abacus-ext-cmdline
CVE-2020-7788 Vulnerability in maven package org.webjars.bowergithub.npm:ini