CVE Published: 27/12/2022 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: Go |
Vendor: github.com/yi-ge/unzip |
Product: github.com/yi-ge/unzip Status : PUBLISHED
CVE-2020-36561 Description
Due to improper path sanitization, archives containing relative file paths can cause files to be written (or overwritten) outside of the target directory.