[Medium] CVE-2026-10732 – All versions of the package decompress are vulnerable to Arbitrary File Write vi...
Medium CVE-2026-10732 All versions of the package decompress are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) when extracting a ZIP archive containing two entries with the same path - the first being a symlink to an arbitrary target and the second being a regular file - the...