Описание
go-unzip vulnerable to Path Traversal
Due to improper path santization, archives containing relative file paths can cause files to be written (or overwritten) outside of the target directory.
Пакеты
Наименование
github.com/artdarek/go-unzip
go
Затронутые версииВерсия исправления
< 2.0.0
2.0.0
Связанные уязвимости
CVSS3: 9.1
nvd
около 3 лет назад
Due to improper path sanitization, archives containing relative file paths can cause files to be written (or overwritten) outside of the target directory.