tar
npm
pkg:npm/tar
13,180 Dependabot PRs
about 3 hours ago
10,085 repositories
1,910 repositories
Security Advisories
node-tar is Vulnerable to Arbitrary File Overwrite and Symlink Poisoning via Insufficient Path Sanitization
tar has Hardlink Path Traversal via Drive-Relative Linkpath
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links
Arbitrary File Creation/Overwrite on Windows via insufficient relative path sanitization
Arbitrary File Read/Write via Hardlink Target Escape Through Symlink Chain in node-tar Extraction
Recent PRs
Bump the npm_and_yarn group across 1 directory with 4 updates
pulibrary/tigerdata-app #2461
chore(deps): bump the npm_and_yarn group across 6 directories with 11 updates
qenex-ai/fern #56
Bump tar from 7.5.9 to 7.5.11
Orlando0409/Asada-Juan-Diaz-Informativa #38
Bump the npm_and_yarn group across 5 directories with 24 updates
ammar-knowledge/storybook #462
build(deps): bump the npm_and_yarn group across 1 directory with 21 updates
JounQin/renovate #12
chore(deps): bump the npm_and_yarn group across 1 directory with 5 updates
chore(deps): bump tar from 7.5.7 to 7.5.10
langchain-ai/langgraphjs #2045
chore(deps): bump the npm-minor-patch group with 35 updates
Fox-block-offcial/VoiceHub-11zhong-d70eb #2
chore(deps): bump the npm_and_yarn group across 6 directories with 18 updates
HeadyMe/Heady-pre-production-9f2f0642 #90
chore(deps): bump the npm_and_yarn group across 1 directory with 5 updates
Bump tar from 7.5.9 to 7.5.11
navikt/veilarbvisittkortfs #914
npm(deps): bump tar from 7.5.10 to 7.5.11
Chloemlla/Happy-TTS #511
build(deps): bump tar from 7.5.9 to 7.5.11 in the production-dependencies group
r-near/near-kit #163
Bump the npm_and_yarn group across 1 directory with 2 updates
basecamp/openclaw-basecamp #58
build(deps): bump the npm_and_yarn group across 5 directories with 9 updates
globe-and-citizen/cnc-portal #1657
Bump the npm_and_yarn group across 1 directory with 4 updates
pulibrary/tigerdata-app #2455
chore(deps): bump the npm-deps group across 1 directory with 8 updates
hiero-ledger/solo #3523
Bump tar from 7.5.7 to 7.5.10 in /packages/local-build-plugin
expo/eas-cli #3480
deps(deps): bump the other-deps group across 1 directory with 59 updates
chore(deps): bump tar from 7.5.9 to 7.5.11
hiero-ledger/solo #3521
Build(deps): bump the npm_and_yarn group across 1 directory with 3 updates
3lvia/designsystem #4008
deps(deps): bump the other-dependencies group across 1 directory with 24 updates
alderichoarau/alderichoarau.github.io #128
chore(deps): Bump the npm_and_yarn group across 1 directory with 7 updates
blackboxprogramming/nextjs-ai-chatbot #25
Bump the npm_and_yarn group across 1 directory with 4 updates
chore(deps): Bump the npm_and_yarn group across 1 directory with 8 updates
blackboxprogramming/nextjs-ai-chatbot #17
build(deps): bump the npm_and_yarn group across 6 directories with 4 updates
AKJUS/Folo #473
chore(deps): bump the npm_and_yarn group across 1 directory with 2 updates
build(deps): bump tar from 7.5.9 to 7.5.10
vyas0189/vyas #319
chore(deps): bump tar from 7.5.1 to 7.5.10 in the npm_and_yarn group across 1 directory
kcbrewron/contentful-blog-svelte #5
Bump the npm_and_yarn group across 1 directory with 2 updates
Awesome-Technologies/synapse-admin #790
build(deps): bump tar and terser-webpack-plugin in /packages/epubjs
chore(deps): bump tar from 7.5.7 to 7.5.10 in /application
Geek-Teck-Mentors/trend_diary #540
Bump the npm_and_yarn group across 4 directories with 8 updates
build(deps): bump the npm_and_yarn group across 1 directory with 4 updates
kushin77/self-hosted-runner #1403
chore(deps): bump tar from 7.5.9 to 7.5.10
yosse95ai/yosse95ai.github.io #22
chore(deps): bump the npm_and_yarn group across 1 directory with 3 updates
mattycraig/nuxt-theme-builder #15
Bump tar and @angular/cli
EgillAntonsson/EgillAntonsson-website #110
build(deps): bump tar from 7.5.9 to 7.5.10 in the npm_and_yarn group across 1 directory
bervProject/my-personal-web #2015
Bump tar from 7.5.3 to 7.5.10 in /nuxt-ui-plugin-101
chore(deps): bump the npm_and_yarn group across 2 directories with 3 updates
chore(deps): bump tar and electron-builder in /electron
build(deps): bump tar and supabase
danblock97/clutch-gg #227
Bump tar from 7.5.9 to 7.5.10
K4mD4m/IdeaForge #17
build(deps-dev): bump the npm_and_yarn group across 1 directory with 1 update
zuplo/zudoku #2122
build(deps-dev): bump tar from 7.5.9 to 7.5.10 in /packages/create-zudoku in the npm_and_yarn group across 1 directory
zuplo/zudoku #2121
Package Details
| Name: | tar |
| Ecosystem: | npm |
| PURL Type: | npm |
| Package URL: | pkg:npm/tar |
| JSON API: | View JSON |
Security Advisories
Package Information
tar for node
| Repository: | https://github.com/isaacs/node-tar |
| Homepage: | https://github.com/isaacs/node-tar#readme |
| Latest Release: |
7.4.3
over 1 year ago |
| Dependent Repos: | 3,179,743 |
| Dependent Packages: | 5,040 |
| Downloads: | 170,210,137 |
| Ranking: | Top 0.0051% by dependent repos Top 0.0126% by downloads Top 0.0176% by dependent pkgs |