Description
FUXA <= 1.1.12 is vulnerable to Local via Inclusion via /api/download.
Remediation
References
https://github.com/frangoteam/FUXA
https://github.com/MateusTesser/CVE-2023-31718
https://youtu.be/VCQkEGntN04
Related Vulnerabilities
CVE-2020-28425 Vulnerability in npm package curljs
CVE-2022-31367 Vulnerability in npm package strapi-plugin-content-type-builder
CVE-2021-32012 Vulnerability in npm package xlsx
CVE-2018-20676 Vulnerability in maven package org.webjars:bootstrap-sass
CVE-2016-8749 Vulnerability in maven package org.apache.camel:camel-jacksonxml