Description
A path traversal vulnerability in localhost-now npm package version 1.0.2 allows the attackers to read content of arbitrary files on the remote server.
Remediation
References
https://hackerone.com/reports/334837
Related Vulnerabilities
CVE-2022-32114 Vulnerability in npm package @strapi/strapi
CVE-2014-3577 Vulnerability in maven package org.apache.httpcomponents:httpclient
CVE-2023-34614 Vulnerability in maven package cc.plural:jsonij
CVE-2017-16209 Vulnerability in npm package enserver
CVE-2020-28281 Vulnerability in npm package set-object-value