SharpZipLib is vulnerable to Path Traversal
73
High Risk
Several path traversal vulnerabilities were identified in SharpZipLib (CVE-2021-32840, CVE-2021-32841, CVE-2021-32842), which may allow attackers to write files to arbitrary locations on the file system during archive extraction. These flaws can be exploited to overwrite critical files or place malicious files in sensitive directories, potentially leading to arbitrary code execution.
You are affected if you are using a version which is within vulnerability ranges.
SharpZipLib is vulnerable to Path Traversal in versions 0.0.1 - 1.3.2.
Upgrade the SharpZipLib library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant