tmp
12 known vulnerabilities · 0 critical · 1 high
tmp allows arbitrary temporary file / directory write via symbolic link `dir` parameter
tmp: Type-confusion bypass of _assertPath allows path traversal via non-string prefix/postfix/template
tmp has Path Traversal via unsanitized prefix/postfix that enables directory escape
tmpl vulnerable to Inefficient Regular Expression Complexity which may lead to resource exhaustion
OpenClaw: Sandbox media fallback tmp symlink alias bypass allows host file reads outside sandboxRoot
Malicious code in babeltmplatp (npm)
OpenClaw vulnerable to path traversal in Feishu media temp-file naming allows writes outside os.tmpdir()
Malicious code in ptmproc (npm)
Malicious code in @adam_baldwin/tag-tmp (npm)
Malicious code in tmp-npmsnha (npm)
Chrome DevTools for agents: daemon.pid write follows symlinks in /tmp fallback runtime directory