Vulnerability CVE-2023-39138


Published: 2023-08-30   Modified: 2023-08-31

Description:
An issue in ZIPFoundation v0.9.16 allows attackers to execute a path traversal via extracting a crafted zip file.

 References:
https://github.com/weichsel/ZIPFoundation/issues/282
https://blog.ostorlab.co/zip-packages-exploitation.html
https://ostorlab.co/vulndb/advisory/OVE-2023-6
https://ostorlab.co/vulndb/advisory/OVE-2023-4

Copyright 2026, cxsecurity.com

 

Back to Top