Extracting archives made easy
62%
Total Score
0
78
85
100
0
| Title | Versions | Severity |
|---|---|---|
CVE-2026-39243 decompress is vulnerable to Improper Link Resolution Before File Access ('Link Following') in versions 0.0.0 - 4.2.1. | 0.0.0 - 4.2.1 | Medium |
CVE-2026-10732 decompress is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 4.2.1. | 0.0.0 - 4.2.1 | Medium |
CVE-2020-12265 decompress is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 4.2.1. | 0.0.0 - 4.2.1 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
pify Version ^2.3.0 | — | — |
make-dir Version ^1.0.0 | — | — |
strip-dirs Version ^2.0.0 | — | — |
graceful-fs Version ^4.1.10 | — | — |
decompress-tar Version ^4.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant