← Back to CVE List

CVE-2021-23484

Published: 2022-01-28T22:15Z
Last Modified: 2024-11-21T05:51Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The package zip-local before 0.3.5 are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) which can lead to an extraction of a crafted file outside the intended extraction directory. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt