Description
The send package before 0.11.1 for Node.js allows attackers to obtain the root path via unspecified vectors.
Remediation
References
http://www.openwall.com/lists/oss-security/2016/04/20/11
http://www.securityfocus.com/bid/96435
https://nodesecurity.io/advisories/56
Related Vulnerabilities
CVE-2018-1000067 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2019-10361 Vulnerability in maven package org.jenkins-ci.plugins.m2release:m2release
CVE-2020-2262 Vulnerability in maven package org.jenkins-ci.plugins:android-lint
CVE-2022-27772 Vulnerability in maven package org.springframework.boot:spring-boot
CVE-2023-3442 Vulnerability in maven package io.jenkins.plugins:servicenow-devops