Description
A path traversal vulnerability in <= v0.9.7 of statichttpserver npm module allows attackers to list files in arbitrary folders.
Remediation
References
https://hackerone.com/reports/570035
Related Vulnerabilities
CVE-2021-4245 Vulnerability in maven package org.webjars.npm:rfc6902
CVE-2022-41946 Vulnerability in maven package org.postgresql:postgresql
CVE-2021-44667 Vulnerability in maven package com.alibaba.nacos:nacos-common
CVE-2022-26884 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-server
CVE-2023-22621 Vulnerability in npm package @strapi/plugin-users-permissions