Vulnerabilities > Unzipper Project

DATE CVE VULNERABILITY TITLE RISK
2018-07-25 CVE-2018-1002203 Path Traversal vulnerability in Unzipper Project Unzipper
unzipper npm library before 0.8.13 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in a Zip archive entry that is mishandled during extraction.
local
low complexity
unzipper-project CWE-22
5.5