Package impact
npm / compressing
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-40931 | unknown | — | — | 1mo ago | Complete Bypass of CVE-2026-24884 Patch via Git-Delivered Symlink Poisoning in compressing | |||
| CVE-2026-24884 | unknown | — | — | 4mo ago | Compressing Vulnerable to Arbitrary File Write via Symlink Extraction |