Description
A path traversal vulnerability in <= v0.2.6 of http-file-server npm module allows attackers to list files in arbitrary folders.
Remediation
References
https://hackerone.com/reports/570133
Related Vulnerabilities
CVE-2020-28502 Vulnerability in npm package xmlhttprequest
CVE-2020-7708 Vulnerability in npm package irrelon-path
CVE-2022-4348 Vulnerability in maven package com.ruoyi:ruoyi-common
CVE-2021-31635 Vulnerability in maven package com.jfinal:jfinal
CVE-2020-7754 Vulnerability in npm package npm-user-validate