Description
loadAsync in JSZip before 3.8.0 allows Directory Traversal via a crafted ZIP archive.
Remediation
References
Related Vulnerabilities
WebLogic Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2021-2351)
WordPress Plugin Related Posts by Zemanta Cross-Site Request Forgery (1.3.1)
WordPress Plugin Another WordPress Classifieds Multiple Vulnerabilities (2.2.1)
WordPress Plugin YITH WooCommerce Authorize.net Payment Gateway Security Bypass (1.1.12)