Description
Path traversal using symlink in npm harp module versions <= 0.29.0.
Remediation
References
https://hackerone.com/reports/530289
Related Vulnerabilities
CVE-2021-23472 Vulnerability in npm package bootstrap-table
CVE-2021-23648 Vulnerability in npm package @braintree/sanitize-url
CVE-2020-7961 Vulnerability in maven package com.liferay.portal:com.liferay.portal.impl
CVE-2021-41164 Vulnerability in maven package org.webjars.npm:ckeditor4
CVE-2021-43785 Vulnerability in npm package @joeattardi/emoji-button