Description
A path traversal vulnerability in servey version < 3 allows an attacker to read content of any arbitrary file.
Remediation
References
https://hackerone.com/reports/355501
Related Vulnerabilities
CVE-2020-7681 Vulnerability in npm package marscode
CVE-2020-15126 Vulnerability in npm package parse-server
CVE-2023-26115 Vulnerability in maven package org.webjars.npm:word-wrap
CVE-2021-42227 Vulnerability in npm package kindeditor
CVE-2021-34428 Vulnerability in maven package org.eclipse.jetty:jetty-server