Description
fsk-server is a simple http server. fsk-server is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/tree/master/directory-traversal/fsk-server
https://nodesecurity.io/advisories/345
Related Vulnerabilities
CVE-2021-23446 Vulnerability in npm package handsontable
CVE-2017-16114 Vulnerability in maven package org.webjars:marked
CVE-2021-3766 Vulnerability in npm package objection
CVE-2021-32850 Vulnerability in npm package @claviska/jquery-minicolors
CVE-2023-26149 Vulnerability in maven package org.webjars.npm:quill-mention