zlib is vulnerable to Remote code execution
98
Critical Risk
Opening a ZIP file with zlib/MiniZip can result in remote code execution if the ZIP file can be provided by an attacker. The underlying mechanism is a buffer overflow.
If your app opens ZIP files that are uploaded by your users, you are affected.
zlib is vulnerable to Remote code execution in versions < 1.3.1.
Upgrade zlib to any version above 1.3.0 once it is released.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant