kevva / decompress

Extracting archives made easy
MIT License
415 stars 51 forks source link

Dependency decompress-tar is a vulnerability #106

Open silvanaweb opened 1 year ago

silvanaweb commented 1 year ago

Hello, there is a vulnerability detected by Snyk regarding decompress-tar that is affecting this package. https://security.snyk.io/package/npm/decompress-tar

Is there any chance to fix it or suggest a solution? Thanks

jckmrrssy commented 1 year ago

I am also running into this. If its okay with you, id be happy to help with this fix @kevva?