Unknown · Serenityos · CVE-2021-31272
**Name of the Vulnerable Software and Affected Versions**
SerenityOS versions prior to commit 3844e8569689dd476064a0759d704bc64fb3ca2c
**Description**
The issue is a directory traversal vulnerability in the tar/unzip functionality, which may lead to command execution or privilege escalation.
**Recommendations**
For versions prior to commit 3844e8569689dd476064a0759d704bc64fb3ca2c, update to a version that includes the fix for this issue.
As a temporary workaround, consider restricting the use of the tar/unzip functionality until a patch is available.