Description
Cross-site scripting (XSS) vulnerability in min-http-server (all versions) allows an attacker with access to the server file system to execute arbitrary JavaScript code in victim's browser.
Remediation
References
https://hackerone.com/reports/570568
Related Vulnerabilities
CVE-2019-10782 Vulnerability in maven package com.puppycrawl.tools:checkstyle
CVE-2018-3719 Vulnerability in maven package org.webjars.npm:mixin-deep
CVE-2021-29425 Vulnerability in maven package commons-io:commons-io
CVE-2021-32859 Vulnerability in maven package org.webjars.npm:github-com-baremetrics-calendar
CVE-2018-1000529 Vulnerability in maven package org.grails.plugins:fields