CVE-2025-11569 | cross-zip zipSync/unzipSync path traversal (SNYK-JS-CROSSZIP-6105396)
A vulnerability marked as critical has been reported in cross-zip. Affected is the function zipSync/unzipSync. The manipulation leads to path traversal.
This vulnerability is documented as CVE-2025-11569. The attack can be initiated remotely. There is not any exploit available.