Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Remediation
References
https://github.com/node-swig/swig-templates/issues/88
Related Vulnerabilities
CVE-2017-16189 Vulnerability in npm package sly07
CVE-2020-19698 Vulnerability in maven package org.webjars.npm:editor.md
CVE-2021-23417 Vulnerability in npm package deepmergefn
CVE-2021-41182 Vulnerability in maven package org.webjars.npm:jquery-ui
CVE-2017-16026 Vulnerability in maven package org.webjars.npm:request