Description
zjjserver is a static file server. zjjserver is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://nodesecurity.io/advisories/427
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/zjjserver
Related Vulnerabilities
CVE-2018-11802 Vulnerability in maven package org.apache.solr:solr-core
CVE-2015-2912 Vulnerability in maven package com.orientechnologies:orientdb-core
CVE-2022-36896 Vulnerability in maven package com.compuware.jenkins:compuware-scm-downloader
CVE-2023-37942 Vulnerability in maven package org.jenkins-ci.plugins:external-monitor-job
CVE-2021-23326 Vulnerability in npm package @graphql-tools/git-loader