CPE
The surya screenshot server version 0.22.1 is vulnerable to an unauthenticated arbitrary file read vulnerability via the /info, /page, and /process routes, allowing attackers to access sensitive local files.