Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Remediation
References
https://github.com/node-swig/swig-templates/issues/88
Related Vulnerabilities
CVE-2021-43138 Vulnerability in maven package org.webjars:async
CVE-2018-20677 Vulnerability in maven package org.webjars.npm:bootstrap
CVE-2022-40084 Vulnerability in maven package org.opencrx:opencrx-core
CVE-2021-43306 Vulnerability in maven package org.webjars.bower:jquery-validation
CVE-2022-23461 Vulnerability in maven package org.webjars.npm:jodit