Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Remediation
References
https://github.com/node-swig/swig-templates/issues/88
Related Vulnerabilities
CVE-2017-20162 Vulnerability in npm package ms
CVE-2022-31166 Vulnerability in maven package org.xwiki.platform:xwiki-platform-oldcore
CVE-2020-36186 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2023-49093 Vulnerability in maven package org.htmlunit:htmlunit
CVE-2022-21803 Vulnerability in maven package org.webjars.npm:nconf