CVE-2026-23644 | esm-dev esm.sh prior 0.0.0-20260116051925-c62ab83c589e tar path.Clean path traversal
A vulnerability, which was classified as critical, was found in esm-dev esm.sh. This affects the function path.Clean of the component tar Handler. Such manipulation leads to path traversal.
This vulnerability is documented as CVE-2026-23644. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.