VYPR

compress

by Klauspost

CVEs (1)

  • CVE-2026-63209HigSep 29, 2026
    risk 0.42cvss 7.5epss —

    compress provides various compression algorithms. Prior to version 1.18.7, a signed integer overflow vulnerability in s2.NewDict() allows an attacker to bypass repeat index validation by supplying a dictionary with a uvarint-encoded repeat value exceeding MaxInt64. When…