Description
Path traversal using symlink in npm harp module versions <= 0.29.0.
Remediation
References
https://hackerone.com/reports/530289
Related Vulnerabilities
CVE-2022-31367 Vulnerability in npm package strapi-plugin-content-type-builder
CVE-2017-18353 Vulnerability in npm package rendertron-middleware
CVE-2017-5954 Vulnerability in npm package serialize-to-js
CVE-2023-3276 Vulnerability in maven package cn.hutool:hutool-core
CVE-2023-40344 Vulnerability in maven package org.jenkins-ci.plugins:delphix