Sharpcompress CVE Vulnerabilities
By Adamhathcock — 2 known vulnerabilities
Critical
0
High
0
Medium
2
Low
0
None
0
All Sharpcompress CVEs
CVE-2026-44788
5.9
medium
SharpCompress is a fully managed C# library to deal with many compression types and formats. In 0.47.4 and earlier, a path traversal vulnerability in IArchive.WriteToDirectory() allows a malicious archive to create directories outside the intended extraction root. For TAR archives, this can be escal
May 26, 2026
CVE-2018-1002206
5.5
medium
SharpCompress before 0.21.0 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in a Zip archive entry that is mishandled during extraction. This vulnerability is also known as 'Zip-Slip'.
Jul 25, 2018