github.com/cilium/cilium-cli is vulnerable to Zip Slip
75
High Risk
Affected versions of this package are vulnerable to a directory traversal (zip slip) vulnerability in the extractZip function due to insufficient sanitization of file paths within ZIP archives. Malicious archive entries containing ../ or absolute paths may cause files to be extracted outside the intended destination directory, potentially overwriting arbitrary files on the file system.
You are affected if you are use a vulnerable version of github.com/cilium/cilium-cli.
github.com/cilium/cilium-cli is vulnerable to Zip Slip in versions 0.18.0 - 0.18.4.
Upgrade github.com/cilium/cilium-cli to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant