Description
censorify.tanisjr is a simple web server and API RESTful service. censorify.tanisjr is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/censorify.tanisjr
https://nodesecurity.io/advisories/392
Related Vulnerabilities
CVE-2021-23673 Vulnerability in npm package pekeupload
CVE-2021-23346 Vulnerability in npm package html-parse-stringify2
CVE-2020-2297 Vulnerability in maven package com.hoiio.jenkins:sms
CVE-2020-28268 Vulnerability in npm package controlled-merge
CVE-2016-0709 Vulnerability in maven package org.apache.portals.jetspeed-2:j2-admin