An open API service providing security vulnerability metadata for many open source software ecosystems.

High
over 2 years ago

pnpm incorrectly parses tar archives relative to specification GSA_kwCzR0hTQS01cjk4LWYzM2otZzhoN84AA0-_

npm @pnpm/win-x64, @pnpm/macos-x64, @pnpm/macos-arm64, @pnpm/linuxstatic-arm64, @pnpm/linux-x64, @pnpm/linux-arm64, @pnpm/exe, pnpm, @pnpm/cafs

Filter by Severity