Description
A Path traversal exists in http_server which allows an attacker to read arbitrary system files.
Remediation
References
https://hackerone.com/reports/692262
Related Vulnerabilities
CVE-2022-35942 Vulnerability in npm package loopback-connector-postgresql
CVE-2019-3868 Vulnerability in maven package org.keycloak:keycloak-core
CVE-2023-31890 Vulnerability in maven package com.glazedlists:glazedlists
CVE-2018-1000006 Vulnerability in maven package org.webjars.npm:electron
CVE-2021-32820 Vulnerability in npm package express-handlebars