Description
goserv is an http server. goserv is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/goserv
https://nodesecurity.io/advisories/473
Related Vulnerabilities
CVE-2020-1697 Vulnerability in maven package org.keycloak:keycloak-server-spi-private
CVE-2020-7607 Vulnerability in npm package gulp-styledocco
CVE-2023-42278 Vulnerability in maven package cn.hutool:hutool-core
CVE-2018-19289 Vulnerability in npm package valine
CVE-2021-20085 Vulnerability in npm package backbone-query-parameters