Description
The renderWidgetResource resource in Atlasian Atlasboard before version 1.1.9 allows remote attackers to read arbitrary files via a path traversal vulnerability.
Remediation
References
https://bitbucket.org/atlassian/atlasboard/commits/9c03df09f09399e2601010466e8ba3a28236eb9c
Related Vulnerabilities
CVE-2023-29008 Vulnerability in npm package @sveltejs/kit
CVE-2019-20921 Vulnerability in maven package org.webjars.bower:bootstrap-select
CVE-2023-28867 Vulnerability in maven package com.graphql-java:graphql-java
CVE-2017-20160 Vulnerability in npm package express-param
CVE-2018-14041 Vulnerability in maven package org.webjars:bootstrap