Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Remediation
References
https://github.com/node-swig/swig-templates/issues/88
Related Vulnerabilities
CVE-2022-41930 Vulnerability in maven package org.xwiki.platform:xwiki-platform-user-profile-ui
CVE-2023-3691 Vulnerability in maven package org.webjars:layui
CVE-2019-5479 Vulnerability in npm package larvitbase-api
CVE-2018-15685 Vulnerability in maven package org.webjars.npm:electron
CVE-2020-7611 Vulnerability in maven package io.micronaut:micronaut-http-client