Security: composefs/tar-rs
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
PAX header desynchronizationGHSA-3pv8-6f4r-ffg2 published
May 18, 2026 by cgwaltersModerate -
tar-rs incorrectly ignores PAX size headers if header size is nonzeroGHSA-gchp-q4r4-x4ff published
Mar 19, 2026 by alexcrichtonLow -
`unpack_in` can chmod arbitrary directories by following symlinksGHSA-j4xf-2g29-59ph published
Mar 19, 2026 by alexcrichtonModerate -
[INFORMATIONAL] No defense against concurrent mutations of filesystem treeGHSA-747h-hw98-c42x published
May 18, 2026 by cgwaltersLow
Learn more about advisories related to composefs/tar-rs in the GitHub Advisory Database