CVE-2020-36566 Information
Dec 28, 2022
cve
Description
Due to improper path santization archives containing relative file paths can cause files to be written (or overwritten) outside of the target directory.
Reference
https://snyk.io/research/zip-slip-vulnerability https://github.com/whyrusleeping/tar-utils/commit/20a61371de5b51380bbdb0c7935b30b0625ac227 https://pkg.go.dev/vuln/GO-2021-0106
Share on: