VYPR

php-zip

by Ne Lexa

CVEs (1)

  • CVE-2026-16767MedJul 23, 2026
    risk 0.00cvss 6.5epss 0.01

    A vulnerability was detected in Ne-Lexa php-zip up to 4.0.2. This affects the function ZipFile::extractTo of the file src/ZipFile.php of the component ZIP Handler. Performing a manipulation of the argument entryName results in path traversal. It is possible to initiate the…