Description
sgqserve is a simple file server. sgqserve is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Remediation
References
https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/sgqserve
https://nodesecurity.io/advisories/419
Related Vulnerabilities
CVE-2023-49376 Vulnerability in maven package com.jfinal:jfinal
CVE-2022-20612 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2021-23460 Vulnerability in npm package min-dash
CVE-2020-7634 Vulnerability in npm package heroku-addonpool
CVE-2020-2216 Vulnerability in maven package org.jenkins-ci.plugins:zephyr-for-jira-test-management