Skip to content

CVE-2025-64118 - dependency update request for node-tar #3229

@Amndeep7

Description

@Amndeep7

This project uses node-tar as a dependency. That project has recently gotten the following CVE: CVE-2025-64118.

That CVE only applies to version 7.5.1. The versions in use within this project are ^7.4.3.

When possible, please update this dependency to the latest version. In the meantime, can we please ensure that we do not allow for the dependency to be 7.5.1?

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions