Description
This affects all versions of package rollup-plugin-serve. There is no path sanitization in readFile operation.
Remediation
References
https://snyk.io/vuln/SNYK-JS-FASTHTTP-572886
https://vuldb.com/?id.158745
Related Vulnerabilities
CVE-2022-40664 Vulnerability in maven package org.apache.shiro:shiro-core
CVE-2018-14732 Vulnerability in maven package org.webjars.npm:webpack-dev-server
CVE-2021-21697 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2022-0198 Vulnerability in maven package edu.stanford.nlp:stanford-corenlp
CVE-2010-2076 Vulnerability in maven package org.apache.cxf:cxf-bundle