CVE-2025-69874 | unjs nanotar up to 0.2.0 Tar parseTar/parseTarGzip path traversal
A vulnerability marked as critical has been reported in unjs nanotar up to 0.2.0. Affected by this vulnerability is the function parseTar/parseTarGzip of the component Tar Handler. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2025-69874. The attack is possible to be carried out remotely. No exploit exists.