Junglewise Threat Intelligence

CVE-2025-59825: astral-tokio-tar has a path traversal in tar extraction

CVE-2025-59825 · Severity: medium · CVSS 4 · Published 2025-09-23

Technologies: astral-tokio-tar (crates.io). Vendors: crates.io.

Executive brief

astral-tokio-tar has a path traversal in tar extraction

Affected products

  • crates.io astral-tokio-tar

Related threats