CVE-2022-48285
29.01.2023, 05:15
loadAsync in JSZip before 3.8.0 allows Directory Traversal via a crafted ZIP archive.
Vendor | Product | Version |
---|---|---|
jszip_project | jszip | 𝑥 < 3.8.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References
loadAsync in JSZip before 3.8.0 allows Directory Traversal via a crafted ZIP archive.
Vendor | Product | Version |
---|---|---|
jszip_project | jszip | 𝑥 < 3.8.0 |