Known vulnerabilities in isaacs node-tar

Vendor: isaacs
Website: https://www.npmjs.com/~isaacs
Total Security Bulletins: 7

Security bulletins (7)

Secuity bulletin Severity Status Published
SB2026030916: Arbitrary file overwrite via symlinks in node-tar High
Patched
09.03.2026
SB2026030915: Arbitrary file overwrite via hardlinks in node-tar High
Patched Public exploit
09.03.2026
SB2026022432: Path traversal in node-tar Medium
Patched
24.02.2026
SB2026012003: Race condition in node-tar Medium
Patched Public exploit
20.01.2026
SB2026011930: Path traversal in node-tar Medium
Patched Public exploit
19.01.2026
SB20251031149: Race condition in node-tar Low
Patched
31.10.2025
SB2019043013: Insecure link following in node-tar Medium
Patched
30.04.2019