Description
This affects all versions of package rollup-plugin-serve. There is no path sanitization in readFile operation.
Remediation
References
https://vuldb.com/?id.158745
https://snyk.io/vuln/SNYK-JS-FASTHTTP-572886
Related Vulnerabilities
CVE-2020-7744 Vulnerability in maven package com.mintegral.msdk:alphab
CVE-2018-19907 Vulnerability in maven package org.craftercms:crafter-engine
CVE-2023-47321 Vulnerability in maven package org.silverpeas.core:silverpeas-core-web
CVE-2017-16129 Vulnerability in maven package org.webjars.bower:superagent