8.2
/ 10
HIGH
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/SC:H/VI:L/SI:L/VA:N/SA:N
Description
CVE-2026-23745: node-tar Arbitrary File Overwrite Research: Joshua van Rijswijk Description PoC for CVE-2026-23745, a high-severity path traversal vulnerability in node-tar 7.5.2. The library fails to sanitize absolute paths in the linkpath field for...
Basic Information
ID
3B65B2E4-2915-5B80-8046-DBC93A64DF6D
Published
Jan 17, 2026 at 07:45
Modified
Jan 17, 2026 at 07:53