Releases127
Frequency1 month 1 week
Last Release
Stars1.34K
opam is a source-based package manager. It supports multiple simultaneous compiler installations, flexible package constraints, and a Git-friendly development workflow.

CVE History

CVEPublishedCVSS v3CVSS v2
7.3 HIGH

In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.