Description
Seneca < 3.9.0 contains a vulnerability that could lead to exposing environment variables to unauthorized users.
Remediation
References
https://hackerone.com/reports/526258
Related Vulnerabilities
CVE-2021-3690 Vulnerability in maven package io.undertow:undertow-core
CVE-2022-41930 Vulnerability in maven package org.xwiki.platform:xwiki-platform-user-profile-ui
CVE-2022-24376 Vulnerability in npm package git-promise
CVE-2016-10735 Vulnerability in maven package org.webjars.npm:bootstrap
CVE-2023-38905 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core