Description
A path traversal vulnerability in servey version < 3 allows an attacker to read content of any arbitrary file.
Remediation
References
https://hackerone.com/reports/355501
Related Vulnerabilities
CVE-2008-6504 Vulnerability in maven package com.opensymphony:xwork
CVE-2020-7777 Vulnerability in npm package jsen
CVE-2022-27263 Vulnerability in npm package strapi
CVE-2021-3810 Vulnerability in npm package code-server
CVE-2023-44487 Vulnerability in maven package org.eclipse.jetty.http2:http2-common