WhisperX tag archive

#zip

This page collects WhisperX intelligence signals tagged #zip. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-03-31 01:27:02 · GitHub Issues

1. Path Traversal Vulnerability in Sethlans Worker Agent Zip Extraction Exposes Systems

A critical path traversal vulnerability exists within the Sethlans worker agent, allowing a maliciously crafted zip archive to write files anywhere on the host filesystem. The flaw resides in the agent's use of Python's `shutil.unpack_archive()` function, which does not validate member paths before extraction. An attac...