Description
This affects all versions of package rollup-plugin-serve. There is no path sanitization in readFile operation.
Remediation
References
https://vuldb.com/?id.158745
https://snyk.io/vuln/SNYK-JS-FASTHTTP-572886
Related Vulnerabilities
CVE-2019-1351 Vulnerability in maven package org.webjars.npm:nodegit
CVE-2023-22899 Vulnerability in maven package net.lingala.zip4j:zip4j
CVE-2022-24785 Vulnerability in maven package org.webjars.bower:moment
CVE-2022-23710 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2021-21627 Vulnerability in maven package org.jenkins-ci.plugins:libvirt-slave