Description
This affects all versions of package rollup-plugin-serve. There is no path sanitization in readFile operation.
Remediation
References
https://vuldb.com/?id.158745
https://snyk.io/vuln/SNYK-JS-FASTHTTP-572886
Related Vulnerabilities
CVE-2022-40084 Vulnerability in maven package org.opencrx:opencrx-core
CVE-2017-16163 Vulnerability in npm package dylmomo
CVE-2022-23496 Vulnerability in maven package nl.basjes.parse.useragent:yauaa-logparser
CVE-2021-39199 Vulnerability in npm package remark-html
CVE-2013-4590 Vulnerability in maven package org.apache.tomcat:catalina-ant