tar rs vulnerability

  1. CVE-2026-33056 tar-rs Symlink chmod Bug: Upgrade tar 0.4.45

    Microsoft has flagged CVE-2026-33056 as a tar-rs vulnerability that can let unpack_in chmod arbitrary directories by following symlinks, turning what should be a routine archive-extraction operation into a permissions-changing bug with security implications far beyond the extraction root. The...