CVE-2026-39246 | LINE decompress up to 4.2.2 Archive Extraction index.js fs.symlink x.linkname
A vulnerability labeled as problematic has been found in LINE decompress up to 4.2.2. This affects the function fs.symlink of the file index.js of the component Archive Extraction. Such manipulation of the argument x.linkname leads to symlink following.
This vulnerability is traded as CVE-2026-39246. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More