Description
node-server-forfront is a simple static file server. node-server-forfront is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/tree/master/directory-traversal/node-server-forfront
https://nodesecurity.io/advisories/382
Related Vulnerabilities
CVE-2020-22864 Vulnerability in npm package froala-editor
CVE-2020-28168 Vulnerability in maven package org.webjars.npm:axios
CVE-2021-29479 Vulnerability in maven package io.ratpack:ratpack-core
CVE-2020-19697 Vulnerability in npm package editor.md
CVE-2022-21653 Vulnerability in maven package org.typelevel:jawn-parser_3