Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Remediation
References
https://github.com/node-swig/swig-templates/issues/88
Related Vulnerabilities
CVE-2020-6464 Vulnerability in npm package electron
CVE-2020-8137 Vulnerability in npm package uppy
CVE-2019-15532 Vulnerability in npm package cyberchef
CVE-2023-34612 Vulnerability in maven package com.helger.commons:ph-json
CVE-2020-7663 Vulnerability in maven package org.webjars.npm:websocket-extensions