CVE-2026-74764 | pandora-analysis Pandora up to 1.12.5 TAR Archive Extraction tarfile.TarFile.extract path traversal
A vulnerability labeled as very critical has been found in pandora-analysis Pandora up to 1.12.5. This affects the function tarfile.TarFile.extract of the component TAR Archive Extraction. Such manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-74764. The attack may be performed from remote. There is no available exploit.
A patch should be applied to remediate this issue.VulDB Recent EntriesRead More