serverless-step-functions icon indicating copy to clipboard operation
serverless-step-functions copied to clipboard

Snyk Report - ([email protected]), Arbitrary File Write via Archive Extraction (Zip Slip)

Open BrettFieber opened this issue 2 years ago • 0 comments

This is a Bug(security) Report

Description

Snyk (https://snyk.io/) is reporting a security issue with [email protected] due to a dependency on [email protected] => [email protected]

https://security.snyk.io/vuln/SNYK-JS-DECOMPRESSTAR-559095

Additional Data

  • Serverless Framework Core Version you're using: 2.72.4
  • The Plugin Version you're using: 3.15.0
  • Operating System: windows/linux

BrettFieber avatar Sep 20 '23 14:09 BrettFieber