Skip to content

tar (node-tar) < 7.5.7 has a security vulnerability #8626

@brendon

Description

@brendon

I use @tensorflow/tfjs-node in a project and it calls for a vulnerable version of tar:

"tar": "^6.2.1"

Would it be possible to release a new version with an updated dependency?

CVE-2026-24842

Metadata

Metadata

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions