Description
goserv is an http server. goserv is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/goserv
https://nodesecurity.io/advisories/473
Related Vulnerabilities
CVE-2022-0654 Vulnerability in npm package requestretry
CVE-2021-23396 Vulnerability in npm package lutils
CVE-2021-23470 Vulnerability in npm package putil-merge
CVE-2020-7602 Vulnerability in npm package node-prompt-here
CVE-2022-39312 Vulnerability in maven package io.dataease:dataease-plugin-common