Description
Path traversal vulnerability in version up to v1.1.3 in serve-here.js npm module allows attackers to list any file in arbitrary folder.
Remediation
References
https://hackerone.com/reports/569966
Related Vulnerabilities
CVE-2022-21718 Vulnerability in npm package electron
CVE-2023-34615 Vulnerability in maven package net.pwall.json:jsonutil
CVE-2022-45685 Vulnerability in maven package org.codehaus.jettison:jettison
CVE-2023-37962 Vulnerability in maven package io.jenkins.plugins:benchmark-evaluator
CVE-2018-5653 Vulnerability in maven package org.apache.cayenne.modeler:cayenne-modeler