pkg:Debian/node-tar-fs

6 total CVEsHIGH2

✅ Check your installed version

All known vulnerabilities

  • HIGH7.5CVE-2024-12905tar-fs Vulnerable to Link Following and Path Traversal via Extracting a Crafted tar File
    from 0, < 2.1.3-0+deb11u1
  • HIGH7.5CVE-2024-12905tar-fs Vulnerable to Link Following and Path Traversal via Extracting a Crafted tar File
    from 0, < 2.1.3-0+deb11u1
  • CVE-2025-59343tar-fs has a symlink validation bypass if destination directory is predictable with a specific tarball
    from 0, < 2.1.3-0+deb11u2
  • CVE-2025-59343tar-fs has a symlink validation bypass if destination directory is predictable with a specific tarball
    from 0, < 2.1.3-0+deb11u2
  • CVE-2025-59343tar-fs has a symlink validation bypass if destination directory is predictable with a specific tarball
    from 0, < 2.1.3-0+deb12u2
  • CVE-2025-48387tar-fs can extract outside the specified dir with a specific tarball
    from 0, < 2.1.3-0+deb11u1