Path Traversal vulnerability in module m-server <1.4.1 allows malicious user to access unauthorized content of any file in the directory tree e.g. /etc/passwd by appending slashes to the URL request.
{ "github_reviewed_at": "2020-06-16T21:25:05Z", "cwe_ids": [ "CWE-22" ], "nvd_published_at": null, "severity": "MODERATE", "github_reviewed": true }