GO-2024-3196 PUBLISHED

Extract has insufficient checks allowing attacker to create symlinks outside the extraction directory. in github.com/codeclysm/extract

Affected Products

VendorProductVersions
github.comcodeclysm/extract/v40, 0
github.comcodeclysm/extract0, 0
github.comcodeclysm/extract/v30, 0

Timeline

References

Open in Interactive Console →