Skip to content

Snyk Report - ([email protected]), Arbitrary File Write via Archive Extraction (Zip Slip) #588

Open
@BrettFieber

Description

@BrettFieber

This is a Bug(security) Report

Description

Snyk (https://snyk.io/) is reporting a security issue with [email protected] due to a dependency on [email protected] => [email protected]

https://security.snyk.io/vuln/SNYK-JS-DECOMPRESSTAR-559095

Additional Data

  • Serverless Framework Core Version you're using: 2.72.4
  • The Plugin Version you're using: 3.15.0
  • Operating System: windows/linux

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions