Description: fs.openAsBlob() can bypass the experimental permission model when using the file system read restriction with the --allow-fs-read flag in Node.js 20. This flaw arises from a missing check in the fs.openAsBlob() API. References: https://nodejs.org/en/blog/vulnerability/june-2023-security-releases Broken commit info: Bugfix commit info: https://github.com/nodejs/node/commit/ebc5927adc3a0ffd44afc172ac678692b72c3bbb
PR: https://gitee.com/src-anolis-sig/noslate-anode/pulls/7