Description
A path traversal in statics-server exists in all version that allows an attacker to perform a path traversal when a symlink is used within the working directory.
Remediation
References
https://hackerone.com/reports/695416
Related Vulnerabilities
CVE-2022-25927 Vulnerability in maven package org.webjars.npm:github-com-faisalman-ua-parser-js
CVE-2020-28438 Vulnerability in npm package deferred-exec
CVE-2012-1833 Vulnerability in maven package org.grails:grails-core
CVE-2019-1010091 Vulnerability in maven package org.webjars:tinymce
CVE-2021-46366 Vulnerability in maven package info.magnolia:magnolia-core