Description
This affects all versions of package fast-http. There is no path sanitization in the path provided at fs.readFile in index.js.
Remediation
References
https://snyk.io/vuln/SNYK-JS-FASTHTTP-572892
Related Vulnerabilities
CVE-2023-30465 Vulnerability in maven package org.apache.inlong:manager-service
CVE-2018-1109 Vulnerability in npm package braces
CVE-2021-27516 Vulnerability in maven package org.webjars.bower:urijs
CVE-2020-28472 Vulnerability in maven package org.webjars.npm:aws-sdk
CVE-2011-0013 Vulnerability in maven package org.apache.tomcat:tomcat-catalina