Description
citypredict.whauwiller is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://nodesecurity.io/advisories/370
https://github.com/JacksonGL/NPM-Vuln-PoC/tree/master/directory-traversal/citypredict.whauwiller
Related Vulnerabilities
CVE-2022-22885 Vulnerability in maven package cn.hutool:hutool-http
CVE-2021-43783 Vulnerability in npm package @backstage/plugin-scaffolder-backend
CVE-2022-36313 Vulnerability in npm package file-type
CVE-2021-23700 Vulnerability in npm package merge-deep2
CVE-2020-10992 Vulnerability in maven package com.linkedin.azkaban:azkaban-common