Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
Remediation
References
https://github.com/node-swig/swig-templates/issues/88
Related Vulnerabilities
CVE-2021-3804 Vulnerability in npm package taro
CVE-2008-6504 Vulnerability in maven package opensymphony:xwork
CVE-2023-50137 Vulnerability in maven package com.jfinal:jfinal
CVE-2017-3202 Vulnerability in maven package com.exadel.flamingo.flex:amf-serializer
CVE-2023-26473 Vulnerability in maven package org.xwiki.platform:xwiki-platform-query-manager