Description
Authorization Bypass Through User-Controlled Key in GitHub repository ionicabizau/parse-path prior to 5.0.0.
Remediation
References
https://github.com/ionicabizau/parse-path/commit/f9ad8856a3c8ae18e1cf4caef5edbabbc42840e8
https://huntr.dev/bounties/afffb2bd-fb06-4144-829e-ecbbcbc85388
Related Vulnerabilities
CVE-2021-23624 Vulnerability in npm package dotty
CVE-2023-33246 Vulnerability in maven package org.apache.rocketmq:rocketmq-controller
CVE-2020-13954 Vulnerability in maven package org.apache.cxf:cxf-rt-transports-http
CVE-2022-31129 Vulnerability in maven package org.webjars.bower:momentjs
CVE-2022-1330 Vulnerability in maven package org.webjars.bower:fullpage