Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Remediation
References
https://github.com/node-swig/swig-templates/issues/88
Related Vulnerabilities
CVE-2021-43116 Vulnerability in maven package com.alibaba.nacos:nacos-client
CVE-2023-49396 Vulnerability in maven package com.jfinal:jfinal
CVE-2017-16006 Vulnerability in maven package org.webjars:remarkable
CVE-2020-7641 Vulnerability in npm package grunt-util-property
CVE-2019-10754 Vulnerability in maven package org.apereo.cas:cas-server-support-simple-mfa