CVE-2024-21542 | luigi up to 3.5.x Archive Extraction _extract_packages_archive path traversal (ID 3301 / EUVD-2024-0098)
A vulnerability was found in luigi up to 3.5.x and classified as problematic. Affected by this issue is the function _extract_packages_archive of the component Archive Extraction Handler. The manipulation leads to path traversal: '\..\filename'.
This vulnerability is handled as CVE-2024-21542. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.