Path Traversal Vulnerability in @xhmkosr/decompress npm Package (CVE-XXXX)
Security Advisory
GHSA-mq2f-45pm-3c9p
Critical
XhmikosR
Affected:
- @xhmikosr/decompress >= 11.0.0, <= 11.1.3
- @xhmikosr/decompress <= 10.2.1
- @xhmikosr/decompress <= 4.2.1
Fixed in:
- 11.1.4
- 10.2.2
Referenced CVEs:
CVE-2026-101894 · 9.1
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.