Description
augustine node module suffers from a Path Traversal vulnerability due to lack of validation of url, which allows a malicious user to read content of any file with known path.
Remediation
References
https://hackerone.com/reports/296282
Related Vulnerabilities
CVE-2020-26870 Vulnerability in maven package org.webjars.bowergithub.cure53:dompurify
CVE-2021-26540 Vulnerability in npm package sanitize-html
CVE-2021-23371 Vulnerability in npm package chrono-node
CVE-2022-2564 Vulnerability in npm package mongoose
CVE-2014-3004 Vulnerability in maven package org.codehaus.castor:castor-xml