Description
A Path traversal exists in http_server which allows an attacker to read arbitrary system files.
Remediation
References
https://hackerone.com/reports/692262
Related Vulnerabilities
CVE-2019-10400 Vulnerability in maven package org.jenkins-ci.plugins:script-security
CVE-2018-11695 Vulnerability in maven package org.webjars.npm:node-sass
CVE-2022-42466 Vulnerability in maven package org.apache.isis.commons:isis-commons
CVE-2020-7610 Vulnerability in maven package org.webjars.npm:bson