Description
A path traversal in statics-server exists in all version that allows an attacker to perform a path traversal when a symlink is used within the working directory.
Remediation
References
https://hackerone.com/reports/695416
Related Vulnerabilities
CVE-2022-0198 Vulnerability in maven package edu.stanford.nlp:stanford-corenlp
CVE-2020-11971 Vulnerability in maven package org.apache.camel:camel-management
CVE-2016-8749 Vulnerability in maven package org.apache.camel:camel-jacksonxml
CVE-2023-22893 Vulnerability in npm package @strapi/plugin-users-permissions