TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

MSRC Update Guide

CVE-2026-26960 node-tar has Arbitrary File Read/Write via Hardlink Target Escape Through Symlink Chain in Extraction

2026-02-25 · Read original ↗

ATT&CK techniques detected

1 predictions
T1204.001Malicious Link
34%
“cve - 2026 - 26960 node - tar has arbitrary file read / write via hardlink target escape through symlink chain in extraction you need to enable javascript to run this app.”

Summary

Information published.